Research on sharing of intrusion detection information
2004
The strategy of information sharing of CIDF is a general method of data sharing, which neither describes in detail what information need to be shared nor presents how to use the shared information, and therefore causes the inefficient information communication among ID components. This work presents a new mechanism aimed at solving the problem of intrusion detection information, which uses a pattern with transformation rules describing request for information. Patterns describe the events that the requesting ID components are interested in and transformation rules describe the requested information from events. This mechanism not only improves the efficiency of information communication, but also saves network bandwidth and processing time.
Keywords:
- Host-based intrusion detection system
- Automated information system
- Personal information management
- Information integration
- Management information systems
- Information filtering system
- Information sharing
- Data mining
- Information needs
- Computer science
- Artificial intelligence
- Machine learning
- Information retrieval
- Correction
- Source
- Cite
- Save
- Machine Reading By IdeaReader
2
References
0
Citations
NaN
KQI