|
|
|||
|
||||
OverviewThe present work is aimed to develop and analyze a novel model for distributed stateful intrusion detection able to scale in order to keep up with the pace of high speed network links. More precisely, in this work we make the following contributions: - We introduce a novel architecture for the distributed matching of stateful network-based signatures. - We present a novel algorithm that allows for the detection of complex, stateful attacks in a distributed fashion. - We provide a precise characterization of the bottlenecks that are inherent to the distributed matching of stateful signatures in the most general case. - We developed optimizing to reduce the impact of these bottlenecks and improve the performance of distributed detection. - We describe a working, yet demonstrative implementation of the system based on the Snort intrusion detection engine - We provide an evaluation of the implemented system on a real-world testbed Full Product DetailsAuthor: Luca FoschiniPublisher: VDM Verlag Dr. Muller Aktiengesellschaft & Co. KG Imprint: VDM Verlag Dr. Muller Aktiengesellschaft & Co. KG Dimensions: Width: 22.90cm , Height: 0.60cm , Length: 15.20cm Weight: 0.176kg ISBN: 9783639192452ISBN 10: 3639192451 Pages: 112 Publication Date: 01 September 2009 Audience: General/trade , General Format: Paperback Publisher's Status: Active Availability: In Print This item will be ordered in for you from one of our suppliers. Upon receipt, we will promptly dispatch it out to you. For in store availability, please contact us. Table of ContentsReviewsAuthor InformationTab Content 6Author Website:Countries AvailableAll regions |
||||