Layer Based Intrusion Detection System for Network Security (LBIDS)
B. Uppalaiah, N. Vamsi Krishna, R. Rajendher
Network Security; Intrusion Detection; Layered Approach.
In this paper we present a general framework for an Intrusion Dection System which we called as Layer Based Intrusion Detection System (LBIDS). We base our framework on the fact that any network needs to ensure the confidentiality, integrity and availability of data and/or services which can be compromised only sequentially one after the other, i.e. availability followed by authentication and authorization and finally leading to loss of confidentiality and integrity. Our framework examines different attributes at different layers to effectively identify any breach of security at every layer. This would have the advantage of reducing the computation and increasing the detection accuracy. This is attributed to the fact that oncesan anomaly is detected at a layer; it saves the computation required by subsequent layer(s) by simply blocking it at the point of identification. Detection accuracy can be increased as the features that are selected to be evaluated to make any decision at a particular layer are optimized to detect that particular attack category
