Authors:
Timothy Nix
;
Kenneth Fritzsche
and
Fernando Maymi
Affiliation:
U.S. Military Academy, United States
Keyword(s):
Software Architectures, Component-Based Systems, Component Composition, Multi-Agent Systems, Event Correlation, Distributed Intrusion Detection.
Related
Ontology
Subjects/Areas/Topics:
Agent-Oriented Programming
;
Artificial Intelligence and Decision Support Systems
;
Coordination in Multi-Agent Systems
;
Coupling and Integrating Heterogeneous Data Sources
;
Databases and Information Systems Integration
;
Enterprise Information Systems
;
Industrial Applications of Artificial Intelligence
;
Intelligent Social Agents and Distributed Artificial Intelligence Applications
;
Organisational Issues on Systems Integration
;
Software Agents and Internet Computing
Abstract:
Event monitoring and correlation across a large network is inherently difficult given limitations in processing with regards to the huge quantity of generated data. Multiple agent systems allow local processing of events, with certain events or aggregate statistics being reported to centralized data stores for further processing and correlation by other agents. This paper presents a framework for a secure and scalable multiagent system for distributed event capture and correlation. We will look at what requirements are necessary to implement a generic multiagent system from the abstract view of the framework itself. We will propose an architecture that meets these requirements. Then, we provide some possible applications of the multiagent network within the described framework.