Title :
The Common Intrusion Specification Language: a retrospective
Author_Institution :
Inf. Sci. Inst., Univ. of Southern California, CA, USA
fDate :
6/22/1905 12:00:00 AM
Abstract :
The Common Intrusion Detection Framework (CIDF) has as its main goal the development of a means whereby independently developed intrusion detection, analysis and response systems and components can share information and thereby interoperate. The main product of CIDF is the Common Intrusion Specification Language (CISL), in which expressions about attacks, anomalies and response prescriptions can be generated and encoded. In this paper, we discuss the development and structure of the language
Keywords :
auditing; open systems; security of data; specification languages; CIDF; CISL; Common Intrusion Detection Framework; Common Intrusion Specification Language; anomalies; attacks; information sharing; interoperation; intrusion analysis; intrusion response systems; response prescriptions; Specification languages;
Conference_Titel :
DARPA Information Survivability Conference and Exposition, 2000. DISCEX '00. Proceedings
Conference_Location :
Hilton Head, SC
Print_ISBN :
0-7695-0490-6
DOI :
10.1109/DISCEX.2000.821507