Title :
Implementing the intrusion detection exchange protocol
Author :
Buchheim, Tim ; Erlinger, Michael ; Feinstein, B. ; Matthews, Greg ; Pollock, Roy ; Betser, Joseph ; Walther, Andy
Author_Institution :
Harvey Mudd Coll., Claremont, CA, USA
Abstract :
We describe the goals of the IETF´s Intrusion Detection Working Group (IDWG) and the requirements for a transport protocol to communicate among intrusion detection systems. We then describe the design and implementation of IAP the first attempt at such a protocol. After a discussion of IAP´s limitations, we discuss BEEP, a new IETF general framework for application protocols. We then describe the intrusion detection exchange protocol (IDXP), a transport protocol designed and implemented within the BEEP framework that fulfills the IDWG requirements for its transport protocol. We conclude by discussing probable future directions for this ongoing effort.
Keywords :
Internet; authorisation; message authentication; transport protocols; BEEP framework; IAP; IDWG; IDXP; IETF; Intrusion Detection Working Group; application protocols; intrusion detection exchange protocol; intrusion detection systems; transport protocol; Aerospace engineering; Discussion forums; Educational institutions; Face detection; Information security; Internet; Intrusion detection; NASA; Standardization; Transport protocols;
Conference_Titel :
Computer Security Applications Conference, 2001. ACSAC 2001. Proceedings 17th Annual
Print_ISBN :
0-7695-1405-7
DOI :
10.1109/ACSAC.2001.991519