A platform for research: civil engineering, architecture and urbanism
Enhancing interoperability of security operation center to heterogeneous intrusion detection systems
This study aimed at enhancing the interoperability of a SOC (security operation center) to heterogeneous IDSes (intrusion detection systems) by designing a few EDMEF (intrusion detection message exchange format) templates. The adopted approach based on the specification of IDMEF and the need of incident detection. The resulted templates have two types that are for use of most usual alerts and aggregation of similar alerts respectively. The objectives of these templates are to simplify the usage of IDMEF and to improve the disadvantages originating from un-customized IDMEF. The results support the objectives of this study.
Enhancing interoperability of security operation center to heterogeneous intrusion detection systems
This study aimed at enhancing the interoperability of a SOC (security operation center) to heterogeneous IDSes (intrusion detection systems) by designing a few EDMEF (intrusion detection message exchange format) templates. The adopted approach based on the specification of IDMEF and the need of incident detection. The resulted templates have two types that are for use of most usual alerts and aggregation of similar alerts respectively. The objectives of these templates are to simplify the usage of IDMEF and to improve the disadvantages originating from un-customized IDMEF. The results support the objectives of this study.
Enhancing interoperability of security operation center to heterogeneous intrusion detection systems
Abe Chin-Ching Lin, (author) / Hsing-Kuo Wong, (author) / Tzong-Chen Wu, (author)
2005-01-01
2240757 byte
Conference paper
Electronic Resource
English
British Library Conference Proceedings | 2005
|TOOCC: Enabling heterogeneous systems interoperability in the study of energy systems
BASE | 2017
|