See this document in CiteSeerX!

Generating Realistic Workloads for Network Intrusion Detection Systems (2004)  (Make Corrections)  (4 citations)
Spyros Antonatos, Kostas G. Anagnostakis, et al.



  Home/Search   Context   Related

 
View or download:
upenn.edu/~anagnost...idsbenchfinal.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  upenn.edu/~anagnost/papers/ (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: While the use of network intrusion detection systems (nIDS) is becoming pervasive, evaluating nIDS performance has been found to be challenging. The goal of this study is to determine how to generate realistic workloads for nIDS performance evaluation. We develop a workload model that appears to provide reasonably accurate estimates compared to real workloads. The model attempts to emulate a traffic mix of different applications, reflecting characteristics of each application and the way these... (Update)

Cited by:   More
Deterministic Memory-Efficient String Matching.. - Tuck, Sherwood.. (2004)   (Correct)

Active bibliography (related documents):   More   All
1.9:   Performance Analysis of Content Matching Intrusion.. - Antonatos.. (2004)   (Correct)
0.6:   An Overview of Issues in Testing Intrusion Detection.. - Mell, Hu, Lippmann..   (Correct)
0.5:   Pre-decoded CAMs for Efficient and High-Speed NIDS Pattern.. - Sourdis, Pnevmatikatos (2004)   (Correct)

System load high. Please wait...
Timeout. Please try your query later.
Similar documents based on text:   More   All
0.5:   Exclusion-based Signature Matching for Intrusion.. - Markatos, Antonatos.. (2002)   (Correct)
0.3:   The Price of Safety in an Active Network - Alexander, Anagnostakis.. (1999)   (Correct)
0.2:   A Domain-Specific String Matching Algorithm for.. - Anagnostakis.. (2003)   (Correct)

Related documents from co-citation:   More   All
4:   Fast prefix matching of bounded strings - Buchsbaum, Fowler et al. - 2003
4:   Code Red worm exploiting buffer overflow in IIS indexing service DLL (context) - CC - 2002
4:   A string matching algorithm fast on the average (context) - Commentz-Walter - 1979

BibTeX entry:   (Update)

S. Antonatos, K. G. Anagnostakis, and E. P. Markatos. Generating realistic workloads for network intrusion detection systems. In ACM Workshop on Software and Performance, 2004. http://citeseer.ist.psu.edu/antonatos04generating.html   More

@misc{ antonatos04generating,
  author = "S. Antonatos and K. Anagnostakis and E. Markatos",
  title = "Generating realistic workloads for network intrusion detection systems",
  text = "S. Antonatos, K. G. Anagnostakis, and E. P. Markatos. Generating realistic
    workloads for network intrusion detection systems. In ACM Workshop on Software
    and Performance, 2004.",
  year = "2004",
  url = "citeseer.ist.psu.edu/antonatos04generating.html" }
Citations (may not include all citations):
214   A fast string searching algorithm (context) - Boyer, Moore - 1977
58   available via anonymous ftp to ftp (context) - McCanne, Leres et al.
34   Software - Practice and Experience (context) - Horspool, searching - 1980
22   Testing and evaluating computer intrusion detection systems (context) - Robert, Terrence et al. - 1999
19   Testing intrusion detection systems: A critique (context) - McHugh - 1998
13   A fast algorithm for multi-pattern searching - Wu, Manber - 1994
12   An analysis of fast string matching applied to content-based.. (context) - Fisk, Varghese - 2002
10   Towards faster pattern matching for intrusion detection (context) - Coit, Staniford et al. - 2002
7   Architecture of a network monitor - Moore, Hall et al. - 2003
6   Measurement and analysis of real network traffic - Courcoubetis, Siris - 1999
5   Capacity verification for high speed network intrusion detec.. (context) - Hall, Wiley - 2002
5   Intrusion detection systems group test (context) - Group - 2001
5   Enhancing byte-level network intrusion detection signatures .. - Sommer, Paxson - 2003
4   Characterizing the performance of network intrusion detectio.. - Schaelicke, Slabach et al. - 2003
3   Dragon claws its way to the top (context) - Mueller, Shipley - 2001
2   line generation of fractal and multifractal traffic - Veitch, Backar et al. - 2000
2   ExB: Exclusion-based signature matching for intrusion detect.. (context) - Markatos, Antonatos et al. - 2002
2   Performance analysis of content matching intrusion detection.. - Antonatos, Anagnostakis et al. - 2004
2   Detection Revisited (context) - Snort - 2002
2   xB: A domain-specific string matching algorithm for intrusio.. - Anagnostakis, Markatos et al.
1   A nonstationary traffic train model for fine scale inference.. - Liu, Wiel et al. - 2003
1   Intrusion detection testing and benchmarking methodologies (context) - Athanasiades, Abler et al. - 2003
http://ita.ee.lbl.gov/
http://www.eurocompton.net/stick
http://csrc.nist.gov/publications/nistir/nistir-7007.pdf
http://dast.nlanr.net/Projects/Iperf/
http://pma.nlanr.net/Traces/
http://www.shmoo.com/cctf/
http://ftp.arl.mil/ftp/pub/ttcp
http://www.stolenshoes.net/sniph/index.html

Documents on the same site (http://www.cis.upenn.edu/~anagnost/papers/):   More
A Cooperative Immunization System for an Untrusting.. - Anagnostakis.. (2003)   (Correct)
Direct Measurement Versus Indirect Inference for.. - Anagnostakis, Greenwald (2002)   (Correct)
Open Packet Monitoring on FLAME: Safety.. - Anagnostakis.. (2002)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC