[usc.gif]

GridSec: Trusted Grid Computing with Dynamic Resources and Automated Intrusion Responses

[isi.gif]
[gridsec.gif]

New Ideas

The National Science Foundation funded GridSec effort at the University of Southern California. The GridSec project is devoted to protecting pervasive, cluster, peer-to-peer, and Grid computing environments. Several research fronts are being attacked with intensive simulation, testbed construction, and NetShield software development.

Impact

Project Staff

Research Assistant at ISI: Research Assistants at USC EE and CS Min Qin, Shanshan Song, Yongjin Kim, Rakesh Rajbanshi, Ching-Hua Chuan, Gurpreet Grewal, Mikin Macwan, Narayana Jayaram, Yushun Zhang, Rohil Tripathi.

International Collaborators: Prof. Michel Cosnard of INRIA, France Dr. Zhiwei Xu of Chinese Academy of Sciences

Objectives

Approach

GridSec for protecting distributed resources:

Automated intrusion detection and responses: Continued research tasks and future directions:

Current Plan

The researchers at ISI are investigating the policy-controlled data mining for intrusion detection. This approach includes three steps:

  1. Adaptive gathering and encoding of audit data remotely.
  2. Adaptive pre-processing of audit data. Use standard logging tools but support adaptive selection of most influential system features.
  3. Adaptive Data mining. Provide advise/predictions for classifiers based on the info observed by the GAA-API - Generic Authorization and Access-control API and encoded in the security policy.

[anomaly.gif]