Title :
Ontology-based correlation engines
Author :
Stojanovic, Ljiljana ; Abecker, Andreas ; Stojanovic, Nenad ; Studer, Rudi
Author_Institution :
Res. Center for Inf. Technol., Karlsruhe Univ., Germany
Abstract :
Correlation engines are autonomic computing systems that perform the automated, continuous analysis of enterprise-wide event data based on user-defined, configurable rules in order to detect threats and protect a system from them. In this paper, we discuss the run-time advantages of using ontologies as a conceptual backbone for describing knowledge processed by correlation engines.
Keywords :
computer crime; data analysis; knowledge representation; system monitoring; autonomic computing systems; correlation engines; data analysis; enterprise-wide event data; run-time advantages; user-defined rules; Engines; Event detection; Information analysis; Information technology; Ontologies; Performance analysis; Protection; Runtime; Software agents; Spine;
Conference_Titel :
Autonomic Computing, 2004. Proceedings. International Conference on
Print_ISBN :
0-7695-2114-2
DOI :
10.1109/ICAC.2004.1301388