Title :
Sliding Window Based Security Event Correlation
Author :
Hu, Jiafu ; Dong, Yongliang
Author_Institution :
Inf. Security Res. Inst., Inf. Eng. Univ., Zhengzhou
Abstract :
This paper proposed a sliding window based correlation model which could conveniently and efficiently correlate events between different security systems. This model works in a best-effort way to find all relationship between events and enhance event´s reliability in the time window. When the correlation is ending, the original event is either eliminated from event sequence or gotten an increased reliability.
Keywords :
security of data; event reliability; event sequence; security event correlation; sliding window; Aggregates; Educational institutions; Engines; Information security; Intrusion detection; correlation; security; sliding window;
Conference_Titel :
Networking, Architecture, and Storage, 2007. NAS 2007. International Conference on
Conference_Location :
Guilin
Print_ISBN :
0-7695-2927-5
DOI :
10.1109/NAS.2007.50