Cooperating security managers: a peer-based intrusion detection system
- 1 January 1996
- journal article
- Published by Institute of Electrical and Electronics Engineers (IEEE) in IEEE Network
- Vol. 10 (1) , 20-23
- https://doi.org/10.1109/65.484228
Abstract
The need for increased security measures in computer systems and networks is apparent through the frequent media accounts of computer system and network intrusions. One attempt at increasing security measures is in the area of intrusion detection packages. These packages use a variety of means to detect intrusive activities and have been applied to both individual computer systems and networks. Cooperating security managers (CSM) is one such package. Applied to a network, CSM is designed to perform intrusion detection and reporting functions in a distributed environment without requiring a designated central site or server to perform the analysis of network audit data. In addition, it is designed to handle intrusions as opposed to simply detecting and reporting on them, resulting in a comprehensive approach to individual system and network intrusions. Tests of the initial prototype have shown the cooperative methodology to perform favourably.Keywords
This publication has 3 references indexed in Scilit:
- Knowledge-based intrusion detectionPublished by Institute of Electrical and Electronics Engineers (IEEE) ,2003
- NADIR: An automated system for detecting network intrusion and misuseComputers & Security, 1993
- An Intrusion-Detection ModelIEEE Transactions on Software Engineering, 1987