DocumentCode
2027813
Title
A New Distributed IDS Based on CVSS Framework
Author
Aussibal, Julien ; Gallon, Laurent
fYear
2008
fDate
Nov. 30 2008-Dec. 3 2008
Firstpage
701
Lastpage
707
Abstract
The objective of this paper is to describe a new distributed intrusion detection system (IDS) based on CVSS framework. This new platform uses a wide set of classical IDS and detection entities. This distributed IDS aims to improve the discovery of anomalies by reducing the rate of false positives and false negatives. Entities correlate the different alerts emitted by local probes. The severity of anomalies is evaluated by using a cumulative score of alerts scores.
Keywords
security of data; cumulative score; discovery of anomalies; distributed intrusion detection system; local probes; Collaboration; Computer industry; Computer networks; Computer security; Computerized monitoring; Correlation; Internet; Intrusion detection; Probes; Telecommunication traffic;
fLanguage
English
Publisher
ieee
Conference_Titel
Signal Image Technology and Internet Based Systems, 2008. SITIS '08. IEEE International Conference on
Conference_Location
Bali
Print_ISBN
978-0-7695-3493-0
Type
conf
DOI
10.1109/SITIS.2008.115
Filename
4725875
Link To Document