Passer à la navigation principale Passer à la recherche Passer au contenu principal

An ontology-based approach to react to network attacks

  • Nora Cuppens-Boulahia
  • , Frédéric Cuppens
  • , Jorge E.López De Vergara
  • , Enrique Vázquez
  • , Javier Guerra
  • , Hervé Debar
  • ENST Bretagne
  • Universidad Autónoma de Madrid
  • Universidad Politécnica de Madrid
  • Orange Labs

Résultats de recherche: Le chapitre dans un livre, un rapport, une anthologie ou une collectionContribution à une conférenceRevue par des pairs

Résumé

To address the evolution of security incidents in current communication networks it is important to react quickly and efficiently to an attack. The RED (Reaction after Detection) project is defining and designing solutions to enhance the detection/reaction process, improving the overall resilience of IP networks to attacks and help telecommunication and service providers to maintain sufficient quality of service and respect service level agreements. Within this project, a main component is in charge of instantiating new security policies that counteract the network attacks. This paper proposes an ontology-based approach to instantiate these security policies. This technology provides a way to map alerts into attack contexts, which are used to identify the policies to be applied in the network to solve the threat. For this, ontologies to describe alerts and policies are defined, using inference rules to perform such mappings.

langue originaleAnglais
titreProceedings 2008 3rd International Conference on Risks and Security of Internet and Systems, CRiSIS 2008
Pages27-35
Nombre de pages9
Les DOIs
étatPublié - 1 déc. 2008
Modification externeOui
Evénement2008 3rd International Conference on Risks and Security of Internet and Systems, CRiSIS 2008 - Tozeur, Tunisie
Durée: 28 oct. 200830 oct. 2008

Série de publications

NomProceedings 2008 3rd International Conference on Risks and Security of Internet and Systems, CRiSIS 2008

Une conférence

Une conférence2008 3rd International Conference on Risks and Security of Internet and Systems, CRiSIS 2008
Pays/TerritoireTunisie
La villeTozeur
période28/10/0830/10/08

Empreinte digitale

Examiner les sujets de recherche de « An ontology-based approach to react to network attacks ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation