4. Design and development of techniques for increasing security and resiliency
Objectives
|
DescriptionThe output of the work package will be the development of a global framework, comprising procedures and tools, enabling to identify, resist, autonomously respond to anomalous events and protect both the communication network and the critical infrastructure through the prevention and reaction to cascade effects due to the existing interdependencies.
Task 4.1: Design and development of novel tools for fast on-line network monitoring The activity will be devoted to designing techniques for monitoring communication network and measuring network performance parameters. Such techniques will rely on the use of dedicated equipments, such as network processors and cards. Task 4.2: Design and development of novel methods for intrusion detection. This activity will focus on the analysis of existing and definition of novel intrusion detection algorithms. Task 4.3: Design and development of intrusion tolerance techniques This task aims at developing tools and techniques which allow the INTERSECTION infrastructure to provide a trustworthy service also in the presence of intrusions which are due to successful attacks both from internal users and external parties. Task 4.4: Design and development of a framework for the visualisation and analysis of network monitoring and security data This activity will develop a data visualisation and analysis platform aiming at enabling fast and accurate anomaly and intrusion detection and response. This will enable appropriate techniques to be dynamically chosen and customised so that they can always be used against ever-changing threats. Various visualisations techniques will be explored and rigorously evaluated. Task 4.5: Design and development of novel inter- and intradomain topology discovery tools This task is focused on the development of tools capable to process routing information and generate network topology maps which can serve as inputs for network models as well as for intrusion detection and reaction systems |


Previous: 3. Specification of an integrated framework for security and resiliency of networked systems


