A Game Theoretical Model for Optimal Distribution of Network Security Resources - Département Informatique et Réseaux Accéder directement au contenu
Communication Dans Un Congrès Année : 2017

A Game Theoretical Model for Optimal Distribution of Network Security Resources

Résumé

Enforcing security in a network always comes with a trade-off regarding budget constraints, entailing unavoidable choices for the deployment of security equipment over the network. Therefore, finding the optimal distribution of security resources to protect the network is necessary. In this paper, we focus on Intrusion Detection Systems (IDSs), which are among the main components used to secure networks. However, configuring and deploying IDSs efficiently to optimize attack detection and mitigation remain a challenging task. In particular, in networks providing critical services, optimal IDS deployment depends on the type of interdependencies that exists between vulnerable network equipment. In this paper, we present a game theoretical analysis for optimizing intrusion detection in such networks. First, we present a set of theoretical preliminary results for resource constrained network security games. Then, we formulate the problem of intrusion detection as a resource constrained network security game where interdependencies between equipment vul-nerabilities are taken into account. Finally, we validate our model numerically via a real world case study.
Fichier non déposé

Dates et versions

hal-01688475 , version 1 (22-01-2018)

Identifiants

Citer

Ziad Ismail, Christophe Kiennert, Jean Leneutre, Lin Chen. A Game Theoretical Model for Optimal Distribution of Network Security Resources. Gamesec, Oct 2017, Vienna, Austria. ⟨10.1007/978-3-319-68711-7_13⟩. ⟨hal-01688475⟩
252 Consultations
0 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More