A distributed agent-based approach to intrusion detection using the lightweight PCC anomaly detection classifier

Zongxing Xie, Thiago Quirino, Mei Ling Shyu, Shu Ching Chen, Li Wu Chang

Research output: Chapter in Book/Report/Conference proceedingConference contribution

12 Scopus citations

Abstract

In this paper, a novel agent-based distributed intrusion detection system (IDS) is proposed, which integrates the desirable features provided by the distributed agent-based design methodology with the high accuracy and speed response of the Principal Component Classifier (PCC). Experimental results have shown that the PCC lightweight anomaly detection classifier outperforms other existing anomaly detection algorithms such as the KNN and LOF classifiers. In order to assess the performance of the PCC classifier on a real network environment, the Relative Assumption Model together with feature extraction techniques are used to generate normal and anomalous traffic in a LAN testbed. Finally, scalability and response performance of the proposed system are investigated through the simulation of the proposed communication architecture. The simulation results demonstrate a satisfactory linear relationship between the degradation of response performance and the scalability of the system.

Original languageEnglish (US)
Title of host publicationProceedings - Thirteenth International Symposium on Temporal Representation and Reasoning, TIME 2006
Pages446-453
Number of pages8
DOIs
StatePublished - Dec 15 2006
EventIEEE International Conference on Sensor Networks, Ubiquitous, and Trustworthy Computing - Taichung, Taiwan, Province of China
Duration: Jun 5 2006Jun 7 2006

Publication series

NameProceedings - IEEE International Conference on Sensor Networks, Ubiquitous, and Trustworthy Computing
Volume2006 II

Other

OtherIEEE International Conference on Sensor Networks, Ubiquitous, and Trustworthy Computing
CountryTaiwan, Province of China
CityTaichung
Period6/5/066/7/06

    Fingerprint

ASJC Scopus subject areas

  • Engineering(all)

Cite this

Xie, Z., Quirino, T., Shyu, M. L., Chen, S. C., & Chang, L. W. (2006). A distributed agent-based approach to intrusion detection using the lightweight PCC anomaly detection classifier. In Proceedings - Thirteenth International Symposium on Temporal Representation and Reasoning, TIME 2006 (pp. 446-453). [1636211] (Proceedings - IEEE International Conference on Sensor Networks, Ubiquitous, and Trustworthy Computing; Vol. 2006 II). https://doi.org/10.1109/SUTC.2006.1636211