Observatorio de I+D+i UPM

Memorias de investigación
Communications at congresses:
An ontology-based approach to react to network attacks
Year:2008
Research Areas
  • Telematics
Information
Abstract
To address the evolution of security incidents in current communication networks it is important to react quickly and efficiently to an attack. The RED (Reaction after Detection) project is defining and designing solutions to enhance the detection/reaction process, improving the overall resilience of IP networks to attacks and help telecommunication and service providers to maintain sufficient quality of service and respect service level agreements. Within this project, a main component is in charge of instantiating new security policies that counteract the network attacks. This paper proposes an ontology-based approach to instantiate these security policies. This technology provides a way to map alerts into attack contexts, which are used to identify the policies to be applied in the network to solve the threat. For this, ontologies to describe alerts and policies are defined, using inference rules to perform such mappings.
International
Si
Congress
3rd International Conference on Risks and Security of Internet and Systems CRISIS 2008
960
Place
Tozeur, Tunez
Reviewers
Si
ISBN/ISSN
9781424433100
Start Date
28/10/2008
End Date
30/10/2008
From page
0
To page
0
Libro de ponencias del 3rd International Conference on Risks and Security of Internet and System,s CRISIS 2008
Participants
  • Autor: Frederic Cuppens (TELECOM Bretagne)
  • Autor: Nora Cuppens-Boulahia (TELECOM Bretagne)
  • Autor: Javier Guerra
  • Autor: Enrique Vazquez Gallo (UPM)
  • Autor: Hervé Devar
  • Autor: Jorge E. López de Vergara (Univ. Autonoma de Madrid)
Research Group, Departaments and Institutes related
  • Creador: Grupo de Investigación: Redes y Servicios de Telecomunicación e Internet
  • Departamento: Ingeniería de Sistemas Telemáticos
S2i 2020 Observatorio de investigación @ UPM con la colaboración del Consejo Social UPM
Cofinanciación del MINECO en el marco del Programa INNCIDE 2011 (OTR-2011-0236)
Cofinanciación del MINECO en el marco del Programa INNPACTO (IPT-020000-2010-22)