Sciweavers

RAID
2001
Springer

Aggregation and Correlation of Intrusion-Detection Alerts

13 years 9 months ago
Aggregation and Correlation of Intrusion-Detection Alerts
Abstract. This paper describes an aggregation and correlation algorithm used in the design and implementation of an intrusion-detection console built on top of the Tivoli Enterprise Console (TEC). The aggregation and correlation algorithm aims at acquiring intrusion-detection alerts and relating them together to expose a more condensed view of the security issues raised by intrusion-detection systems.
Hervé Debar, Andreas Wespi
Added 30 Jul 2010
Updated 30 Jul 2010
Type Conference
Year 2001
Where RAID
Authors Hervé Debar, Andreas Wespi
Comments (0)