Volume & Issue no: Volume 5, Issue 6, November - December 2016
____________________________________________________________________________________________________
Title: |
RULE-BASE IDS FOR APPLICATION LAYER USING FUZZY LOGIC |
Author Name: |
Ganesh Yadav, Vipul Kumar Verma |
Abstract: |
Abstract
The objective of this paper is to develop a Fuzzy Rule-
Base Based Intrusion Detection System on Application
Layer which works in the application layer of the
network priority. It consists of Fuzzy based IDS and
semantic IDS Rule based IDS looks for the specific
pattern which is defined as malicious. A non-intrusive
regular pattern can be malicious if it occurs several
times with a short time interval. At application layer,
HTTP traffic’s header and payload are analyzed for
possible intrusion. In the proposed misuse detection
module, the semantic intrusion detection system works
on the basis of rules that define various application layer
misuses that are found in the network. An attack
identified by the IDS is based on a corresponding rule in
the rule-base. An event that doesn’t make a ‘hit’ on the
rule-base is given to a Fuzzy Intrusion Detection System
(FIDS) for further analysis. In a Rule-based intrusion
detection system, an attack can either be detected if a
rule is found in the rule base or goes undetected if not
found. If this is combined with FIDS, the intrusions
went undetected by RIDS can further be detected. These
non-intrusive patterns are checked by the fuzzy IDS for a
possible attack. The non-intrusive patterns are
normalized and converted as linguistic variable in fuzzy
sets. These values are given to Fuzzy Cognitive Mapping
(FCM). If there is any suspicious event, then it generates
an alarm to the client/server. Results show better
performance in terms of the detection rate and the time
taken to detect. The detection rate is increased with
reduction in false positive rate for a specific attack.
Keywords: Non-Intrusive, Semantic Intrusion detection,
Application Layer misuse detector, Fuzzy Intrusion detection,
Fuzzy Cognitive Mapping, HTTP intrusion detection. |
Cite this article: |
Ganesh Yadav, Vipul Kumar Verma , "
RULE-BASE IDS FOR APPLICATION LAYER USING FUZZY LOGIC " , International Journal of Emerging Trends & Technology in Computer Science (IJETTCS) ,
Volume 5, Issue 6, November - December 2016 , pp.
085-091 , ISSN 2278-6856.
|
Full Text [PDF] Back to Current Issue |
NOTE: Authors note that paper cannot be withdrawn at any condition once it is accepted. The Team of IJETTCS advise you, do not submit same article to the multiple journals simultaneously. This may create a problem for you. Please wait for review report which will take maximum 01 to 02 week.