• DocumentCode
    2027813
  • Title

    A New Distributed IDS Based on CVSS Framework

  • Author

    Aussibal, Julien ; Gallon, Laurent

  • fYear
    2008
  • fDate
    Nov. 30 2008-Dec. 3 2008
  • Firstpage
    701
  • Lastpage
    707
  • Abstract
    The objective of this paper is to describe a new distributed intrusion detection system (IDS) based on CVSS framework. This new platform uses a wide set of classical IDS and detection entities. This distributed IDS aims to improve the discovery of anomalies by reducing the rate of false positives and false negatives. Entities correlate the different alerts emitted by local probes. The severity of anomalies is evaluated by using a cumulative score of alerts scores.
  • Keywords
    security of data; cumulative score; discovery of anomalies; distributed intrusion detection system; local probes; Collaboration; Computer industry; Computer networks; Computer security; Computerized monitoring; Correlation; Internet; Intrusion detection; Probes; Telecommunication traffic;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Signal Image Technology and Internet Based Systems, 2008. SITIS '08. IEEE International Conference on
  • Conference_Location
    Bali
  • Print_ISBN
    978-0-7695-3493-0
  • Type

    conf

  • DOI
    10.1109/SITIS.2008.115
  • Filename
    4725875