Title :
Research on sharing of intrusion detection information
Author :
Xiong, Jia-Jun ; Zhang, Hai ; Zhu, Gui-Ming
Author_Institution :
Dept. of Comput., Radar Acad., Wuhan, China
Abstract :
The strategy of information sharing of CIDF is a general method of data sharing, which neither describes in detail what information need to be shared nor presents how to use the shared information, and therefore causes the inefficient information communication among ID components. This work presents a new mechanism aimed at solving the problem of intrusion detection information, which uses a pattern with transformation rules describing request for information. Patterns describe the events that the requesting ID components are interested in and transformation rules describe the requested information from events. This mechanism not only improves the efficiency of information communication, but also saves network bandwidth and processing time.
Keywords :
information management; security of data; information communication; intrusion detection information; intrusion detection information sharing; network bandwidth; Bandwidth; Boolean functions; Cybernetics; Data mining; History; Intrusion detection; Machine learning; Radar;
Conference_Titel :
Machine Learning and Cybernetics, 2004. Proceedings of 2004 International Conference on
Print_ISBN :
0-7803-8403-2
DOI :
10.1109/ICMLC.2004.1380752