Towards Trust-Aware Collaborative Intrusion Detection: Challenges and Solutions

AbstraktCollaborative Intrusion Detection Systems (CIDSs) are an<br />emerging field in cyber-security. In such an approach, multiple sensors<br />collaborate by exchanging alert data with the goal of generating a complete<br />picture of the monitored network. This can provide significant improvements<br />in intrusion detection and especially in the identification of<br />sophisticated attacks. However, the challenge of deciding to which extend<br />a sensor can trust others, has not yet been holistically addressed<br />in related work. In this paper, we firstly propose a set of requirements<br />for reliable trust management in CIDSs. Afterwards, we carefully investigate<br />the most dominant CIDS trust schemes. The main contribution of<br />the paper is mapping the results of the analysis to the aforementioned<br />requirements, along with a comparison of the state of the art. Furthermore,<br />this paper identifies and discusses the research gaps and challenges<br />with regard to trust and CIDSs.
