A Global Security Architecture for Intrusion Detection on Computer Networks - Archive ouverte HAL Accéder directement au contenu
Article Dans Une Revue Computers & Security Année : 2008

A Global Security Architecture for Intrusion Detection on Computer Networks

Résumé

Detecting all kinds of intrusions efficiently requires a global view of the monitored network. Built to increase the security of computer networks, traditional IDS are unfortunately unable to give a global view of the security of a network. To overcome this situation, we are developing a distributed SOC (Security Operation Center) which is able to detect attacks occurring simultaneously on several sites in a network and to give a global view of the security of that network. In this article, we present the global architecture of our system, called DSOC as well as several methods used to test its accuracy and performance.
Fichier non déposé

Dates et versions

hal-00663122 , version 1 (26-01-2012)

Identifiants

  • HAL Id : hal-00663122 , version 1

Citer

Abdoul-Karim Ganame, Julien Bourgeois, Renaud Bidou, Franã§ois Spies. A Global Security Architecture for Intrusion Detection on Computer Networks. Computers & Security, 2008, pp.30--47. ⟨hal-00663122⟩
68 Consultations
0 Téléchargements

Partager

Gmail Facebook X LinkedIn More