In order to test the proposed distributed intrusion detection system there is a need for sufficient hardware and software in place as to provide a reasonable approximation of the actual conditions that such a system would expect to encounter if deployed in a live environment. These hardware and software requirements are compounded when attempting to test a distributed grid computing system because such systems typically can often scale to the hundreds or even thousands of computers. Even if sufficient hardware is obtainable, the generation of accurate test data accurately depicting normal patterns of network or Internet traffic can provide additional challenges, especially when the data is time sensitive. This paper demonstrates a method by which a distributed grid based IDS can be designed and implemented using virtual servers deployed on Amazon.com's elastic compute cloud service.
Marco BalduzziJonas ZaddachDavide BalzarottiEngin KirdaSergio Loureiro
D. EvansI. FiskB. HolzmanA. MeloS. MetsonR. PordesP. SheldonA Tiradani
Bach BuiGeorge W. ChangRichard KimEmily LawShan Malhotra
Tim DörnemannErnst JuhnkeBernd Freisleben