Inspired information processing in biology immune system is a highly parallel and distributed intelligent computation which has immune memory, and self-learning, retrieval capabilities. The theory of modern immunology provides a new idea to study network intrusion defense algorithm. The architecture of network intrusion defense based on immune vaccination principle is proposed. The intrusion detection system can detect all intrusions, including known and unknown. The information of new intrusion, which gotten from current monitored network is encapsulated and sent to the other network as vaccine. So the other network can defense the same intrusion. The experimental results show that the new model actualizes an active and distributed prevention policy than that of the traditional passive intrusion prevention systems.
Published in:
Computer Application and System Modeling (ICCASM), 2010 International Conference on
(Volume:2
)
Date of Conference: 22-24 Oct. 2010