A new distributed IDS based on CVSS framework - Archive ouverte HAL Accéder directement au contenu
Communication Dans Un Congrès Année : 2008

A new distributed IDS based on CVSS framework

Résumé

The objective of this paper is to describe a new distributed Intrusion Detection System (IDS) based on CVSS framework. This new platform uses a wide set of classical IDS and detection entities. This distributed IDS aims to improve the discovery of anomalies by reducing the rate of false positives and false negatives. Entities correlate the different alerts emitted by local probes. The severity of anomalies is evaluated by using a cumulative score of alerts scores.
Fichier non déposé

Dates et versions

hal-00349397 , version 1 (30-12-2008)

Identifiants

  • HAL Id : hal-00349397 , version 1

Citer

Julien Aussibal, Laurent Gallon. A new distributed IDS based on CVSS framework. Fourth International Conference on signal_image technology and Internet based systems (SITIS 2008), Nov 2008, Bali, Indonesia. ⟨hal-00349397⟩

Collections

UNIV-PAU LIUPPA
20 Consultations
0 Téléchargements

Partager

Gmail Facebook X LinkedIn More