Facebook Instagram Twitter RSS Feed PodBean Back to top on side

Development of Threat Evaluation Tool for Distributed Network Environment

In: Computing and Informatics, vol. 24, no. 2
Keun- Hee Han - Il- Gon Kim - Kang-Won Lee - Jin-Young Choi - Sang-Hun Jeon
Detaily:
Rok, strany: 2005, 109 - 121
Kľúčové slová:
ESM (Enterprise Security Management), SIM (Security Information Management), SIA (Security Information Alert), IDS (Intrusion Detection System)
O článku:
Current information protection systems only detect and warn against individual intrusion, and are not able to provide a collective and synthesized alert message. In this paper, we propose a new Meta-IDS system which is called ``SIA System''. The SIA system can filter redundant alert messages, analyze mixed attacks using correlation alert messages from each sensor and respond to security threats quickly, after classifying them into one of four different statuses. Then we implement the SIA system and test the efficiency of it in the managed networks. Thus we confirm that the SIA system enables security managers to deal with security threats efficiently.
Ako citovať:
ISO 690:
Hee Han, K., Gon Kim, I., Lee, K., Choi, J., Jeon, S. 2005. Development of Threat Evaluation Tool for Distributed Network Environment. In Computing and Informatics, vol. 24, no.2, pp. 109-121. 1335-9150.

APA:
Hee Han, K., Gon Kim, I., Lee, K., Choi, J., Jeon, S. (2005). Development of Threat Evaluation Tool for Distributed Network Environment. Computing and Informatics, 24(2), 109-121. 1335-9150.