Intrusion Detection and Avoidance for a Heterogeneous Cluster of Web Sites

1Citations
Citations of this article
3Readers
Mendeley users who have this article in their library.
Get full text

Abstract

This paper outlines the design of a Hybrid Intrusion Detection System for a Web-Server hosting a heterogeneous cluster of web sites. This system was trained using the Classification and Regression Tree (CART) technique, with the Gini index as the measure of impurity, and allows for a headless operation once deployed. The model utilizes information that was mined from the Access logs of a web server. The system automatically performs pre-processing, classification and the blacklisting of those IP addresses deemed to be harmful. This model relies on the correlation between the server issued status codes, HTTP Methods, types of files being accessed, the geographical location of the client and the prospect of that being malicious. This system, which was made open source for both public use and development, achieved an accuracy score of 94.5% on the test set. This paper is aimed to Internet as a complex network Conference.

Cite

CITATION STYLE

APA

Ramsook, D., Hosein, P., & Pooransingh, A. (2019). Intrusion Detection and Avoidance for a Heterogeneous Cluster of Web Sites. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 11938 LNCS, pp. 250–256). Springer. https://doi.org/10.1007/978-3-030-34770-3_19

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free