• Title of article

    Integrated access control and intrusion detection for Web servers

  • Author/Authors

    Kim، Dongho نويسنده , , T.، Ryutov, نويسنده , , C.، Neuman, نويسنده , , Zhou.، Li, نويسنده ,

  • Issue Information
    روزنامه با شماره پیاپی سال 2003
  • Pages
    -840
  • From page
    841
  • To page
    0
  • Abstract
    Current intrusion detection systems work in isolation from access control for the application the systems aim to protect. The lack of coordination and interoperation between these components prevents detecting and responding to ongoing attacks in real-time before they cause damage. To address this, we apply dynamic authorization techniques to support fine-grained access control and application level intrusion detection and response capabilities. This paper describes our experience with integration of the Generic Authorization and Access Control API (GAA-API) to provide dynamic intrusion detection and response for the Apache Web server. The GAA-API is a generic interface which may be used to enable such dynamic authorization and intrusion response capabilities for many applications.
  • Keywords
    Patients
  • Journal title
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS
  • Serial Year
    2003
  • Journal title
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS
  • Record number

    92290