IDPS: AN INTEGRATED INTRUSION HANDLING MODEL FOR CLOUD COMPUTING ENVIRONMENT

Hassen Mohammed Alsafi, Wafaa Mustafa Abduallah, Al‐Sakib Khan Pathan · 2012

Today, many organizations are moving their computing services towards the Cloud. This makes their computer processing available much more conveniently to users. However, it also brings new security threats and cha llenges about safety and r eliability. In fact, Cloud Computing is an attractive and cost-sa ving service for buyers as i t provides accessibility and reliabilit y options for users and sca lable sales for providers. I n spite of being attractive, Cloud fe ature poses various new security threats and challenges when it comes to deploying Intrusion Detection System (IDS) in Cloud environments. Most Intrusion Detection Systems (IDSs) are designed to handle specific types of a ttacks. It is evident that no single te chnique can guarantee protection against future attac ks. Hence, there is a need for an inte grated scheme which can provide robust protection against a complete spectrum of threats. On the other hand, th ere is great need for techn ology that enables the network and its hosts to defend themselves with some level of in telligence in order to accurately iden tify and block malicious traffic and activities. In th is case, it is called Intrusion preven tion system (IPS). Therefore, in this paper, we emphasize on recent implementations of IDS on Cloud Computing environments in terms of security and privacy. We propose an effective and efficien t model termed as the Integrated Intrusion Detection and Prevention System (IDPS) which combines both IDS and IPS in a single mechanism. Our mechanism also integrates two techniques namely, Anomaly Detection (AD) and Signature Detection (SD) that can work in cooperation to detect various numbers of attacks and stop them through the capability of IPS.

Read the paper · More papers on PaperTik