This paper proposes anatomy and main functional- ities of a distributed framework for supporting adaptive ensemble- based intrusion detection. We start from open issues and lim- itations of actual state-of-the-art proposals, and we derive a suitable architecture that, based on actual, emerging research trends, finally defines an innovative ensemble-based network in- trusion detection system that combines following requirements: distribution, cooperativeness, scalability, multi-scale network traffic analysis, feature selection and extraction. These requirements are recognized by our study as first-class research challenges for next- generation intrusion detection systems.

A Distributed Framework for Supporting Adaptive Ensemble-based Intrusion Detection,

Gianluigi Folino;Pietro Sabatino
2015

Abstract

This paper proposes anatomy and main functional- ities of a distributed framework for supporting adaptive ensemble- based intrusion detection. We start from open issues and lim- itations of actual state-of-the-art proposals, and we derive a suitable architecture that, based on actual, emerging research trends, finally defines an innovative ensemble-based network in- trusion detection system that combines following requirements: distribution, cooperativeness, scalability, multi-scale network traffic analysis, feature selection and extraction. These requirements are recognized by our study as first-class research challenges for next- generation intrusion detection systems.
2015
Istituto di Calcolo e Reti ad Alte Prestazioni - ICAR
big data
intrusion detection
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/20.500.14243/303826
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus ND
  • ???jsp.display-item.citation.isi??? ND
social impact