Inproceedings,

Multi-agents system service based platform in telecommunication security incident reaction

, , and .
Proceedings of the Second international conference on Global Information Infrastructure Symposium, page 63--68. Piscataway, NJ, USA, IEEE Press, (2009)

Abstract

The main focus of this paper is to provide a global architectural solution built on the requirements for a reaction after alert detection mechanisms in the frame of Information Systems Security and more particularly applied to telecom infrastructures security. These infrastructures are distributed in nature, therefore the targeted architecture is developed in a distributed perspective and is composed of three basic layers: low level, intermediate level and high level. The low level is dedicated to be the interface between the main architecture and the targeted infrastructure. The intermediate level is responsible of correlating the alerts coming from different domains of the infrastructure and to deploy smartly the reaction actions. This intermediate level is elaborated using multi-agents system that provide the advantages of autonomous and interaction facilities. The high level permits to have a supervision view of the whole infrastructure, and to manage business policy definition. The proposed approach has been successfully experimented for data access control mechanism.

Tags

Users

  • @christophe.feltus@tudor.lu

Comments and Reviews