Distributed detection system of security intrusions based on partially ordered events and patterns

22Citations
Citations of this article
2Readers
Mendeley users who have this article in their library.
Get full text

Abstract

The proposed system architecture of intrusion detection12 uses a two-layer hybrid model for detecting intrusions. The system operates on the basis of partial network flows in real communication operation and provides processing of these data in real time. First layer consists of detection sensors which provide basic processing of input data on behalf of statistical methods with a direct connection to countermeasure modules. Performance and accuracy of the modeling system is ensured by using central distributed processing, in which the detection of generalized description of partial ordered events is used, preventing the intrusion itself. By doing so the attack variability issues of the same type are provided. © 2009 Springer-Verlag Berlin Heidelberg.

Cite

CITATION STYLE

APA

Vokorokos, L., Baláž, A., & Chovanec, M. (2009). Distributed detection system of security intrusions based on partially ordered events and patterns. Studies in Computational Intelligence, 243, 389–403. https://doi.org/10.1007/978-3-642-03737-5_28

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free