Title :
A Global Security Architecture for Intrusion Detection on Computer Networks
Author :
Ganame, Abdoul Karim ; Bourgeois, Julien ; Bidou, Renaud ; Spies, Francois
Author_Institution :
LIFC, Univ. de Franche-Comte, Montbeliard
Abstract :
Detecting all kinds of intrusions efficiently requires a global view of the monitored network. Built to increase the security of computer networks, traditional IDS are unfortunately unable to give a global view of the security of a network. To overcome this situation, we are developing a distributed SOC (security operation center) which is able to detect attacks occurring simultaneously on several sites in a network and to give a global view of the security of that network. In this article, we present the global architecture of our system, called DSOC as well as several methods used to test its accuracy and performance.
Keywords :
computer architecture; computer networks; security of data; telecommunication security; computer networks; distributed security operation center; global security architecture; intrusion detection; Computer architecture; Computer networks; Computer security; Computerized monitoring; Data analysis; Data security; Engines; Information security; Intrusion detection; Protection; Distributed intrusion detection; IDS; SOC; global view; network security;
Conference_Titel :
Parallel and Distributed Processing Symposium, 2007. IPDPS 2007. IEEE International
Conference_Location :
Long Beach, CA
Print_ISBN :
1-4244-0910-1
Electronic_ISBN :
1-4244-0910-1
DOI :
10.1109/IPDPS.2007.370621