By Topic

Development of an Integrated Solution for Intrusion Detection: A Model Based on Data Correlation

Sign In

Cookies must be enabled to login.After enabling cookies , please use refresh or reload or ctrl+f5 on the browser for the login options.

Formats Non-Member Member
$33 $13
Learn how you can qualify for the best price for this item!
Become an IEEE Member or Subscribe to
IEEE Xplore for exclusive pricing!
close button

puzzle piece

IEEE membership options for an individual and IEEE Xplore subscriptions for an organization offer the most affordable access to essential journal articles, conference papers, standards, eBooks, and eLearning courses.

Learn more about:

IEEE membership

IEEE Xplore subscriptions

3 Author(s)
J. Afonso ; Pedro Nunes Institute, Coimbra, Portugal ; E. Monteiro ; V. Costa

This work describes a solution for intrusion detection that presents an improved operational efficacy - both in terms of performance as well as volume of processed data - reducing at the same time the number of false negative and false positive results. For that purpose we correlate the data collected by the intrusion detection system with other data sources, such as events that are reported by interfacing equipment (edge devices) as well as other agents considered crucial for this purpose such as vulnerability detection solutions. As part of the proposed solution the data is collected in a relational data base system, to facilitate data correlation, as well as making it available through an easy to use Web interface. Additionally, the system interacts with the network managers, in response to pre-defined triggers using a unified messaging platform that uses tools capable of processing e-mails, text messages and also an instant messaging tool based of the XMPP protocol

Published in:

International conference on Networking and Services (ICNS'06)

Date of Conference:

16-18 July 2006