期刊文献+

协同式入侵监视系统的体系结构设计 被引量:1

DESIGN OF A COLLABORATIVE INTRUSION MONITORING SYSTEM ARCHITECTURE
在线阅读 下载PDF
导出
摘要 协同式入侵监视系统实现不同管理域网络之间告警信息共享、执行集中式告警相关性分析并提供入侵预警服务而提高各个网络的安全性。介绍了设计协同式入侵监视系统面临的系统结构问题,讨论了协同式入侵监视系统的基本组成,提出了实现可扩展的安全信息交换、告警相关性分析和提高系统自身安全性问题的方法。 The collaborative intrusion monitoring system aims to improve all of the isolated network security by implementing alert sharing between these different administrative network systems,providing a centralized alert correlation and early intrusion warning services. This paper describes the architectural challenges facing the design of a collaborative intrusion monitoring system and proposes some approaches for realizing scalable security information exchanging, alert correlation and improving security of system itself.
出处 《计算机应用与软件》 CSCD 北大核心 2007年第6期159-161,共3页 Computer Applications and Software
关键词 网络安全 入侵监视 重叠网络 告警相关 Network security Intrusion monitoring Overlay network Alert correlation
  • 相关文献

参考文献8

  • 1Porras P A,Neumann P G.EMERALD:Event monitoring enabling response to anomalous live disturbances.In Proceedings of the 20th National Information Systems Security Conference,National Institute of Standards and Technology,1997.
  • 2Cuppens F,A.Miége Alert Correlation in a Cooperative Intrusion Detection Framework.Proceedings of the 2002 IEEE Symposium on Security and Privacy.2002:187-200.
  • 3P Ning Y Cui,Reeves D S.Constructing Attack Scenarios through Correlation of (I)ntrusion Alerts.Proceedings of the 9th ACM conference on Computer and communications security.ACM Press,2002:245-254.
  • 4Peng Ning,Yun Cui,Douglas Reeves,Dingbang Xu.Tools and Techniques for Analyzing Intrusion Alerts,in ACM Transactions on Information and System Security,2004,7(2):273-318.
  • 5J Ullrich Dshield home page.http://www.dshield.org,2004.
  • 6IETF,Extended Incident Handling(inch),http://www.ietf.org/html.charters/inch-charter.html.
  • 7Staniford S,Parxson V,Weaver N.How to own the Internet in Your Spare Time,In Proceedings of the 11th Usenix Security Symposium,2002.
  • 8Jun Li,Peter Reiher,Gerald Popek.Resilient self-organizing overlay networks for security update delivery,IEEE Journal on Selected Areas in Communications,Special Issue on Service Overlay Networks,2004,22(1):189-202.

同被引文献4

引证文献1

二级引证文献3

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部