Collaborative Warning Technology Against Network Intrusions Based on Cloud Computing Architecture
Jia Xu, Purui Su, FU Yi-yang · Jisuanji gongcheng · 2013
Current prevalent network warning systems generally lack of ability of self-adaption and collaborarive analysis.A collaborative warning technology against massive network invasions is proposed,which is based on cloud computing architecture.This technology implements the global sharing of network intrusion alerts using distributed hash table,and adopts a tree-structured Peer-to-Peer(P2P) overlay,so that the task scheduling of intrusion correlation can be handled in a self-adaptive way.Experimental results based on a proof-of-concept prototype system demonstrate that,the alert aggregation and correlation through this technology,not only make the architechture of network warning system highly scalable,but also remarkably reduce the reaction time of warning against massive network intrusions without degradation in accuracy.