A Secure Communication Protocol for Distributed Intrusion Detection System

The current secure communication protocols can not completely meet the secure requirements of communication between modules in the distributed intrusion detection system,which is reliability,confidentiality,identify authentication,data integrity and freshness.The paper proposes the module transfer security(MTS) protocol based on TCP,which includes the handshake protocol and the cryptograph transfer protocol,the former provides identify authentication and negotiation about conversation key,and the latter guarantees data secure transmission.At last,it verifies the security of MTS protocol,and then implements it in ODIDS.