| Dennis J. Ingram, H. Steven Kremer, and Neil C. Rowe, "Distributed intrusion detection for computer systems using communicating agents," in Proceedings of 2000. |
....concentrates on signature detection, we hasten to add that analyzer algorithms are also very important and well worth solving. Events from the signature detection device are sent, in real time or batches, to the analyzer (also known as a monitor [3] director [29] manager [34] or controller [17]) which may perform data fusion [15] to correlate events and use advanced logic and algorithms to determine when an alert should be sent. These alerts may be sent to people, to other analyzers as events [25] or to an automated response system that may take actions such as modifying a firewall. ....
Dennis J. Ingram, H. Steven Kremer, and Neil C. Rowe, "Distributed intrusion detection for computer systems using communicating agents," in Proceedings of 2000.
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC