Title
Development Of Threat Evaluation Tool For Distributed Network Environment
Abstract
Current information protection systems only detect and warn against individual intrusion, and are not able to provide a collective and synthesized alert message. In this paper, we propose a new Alleta-IDS system which is called "SIA System". The SIA system can filter redundant alert messages, analyze mixed attacks using correlation alert messages from each sensor and respond to security threats quickly, after classifying them into one of four different statuses. Then we implement the SIA system and test the efficiency of it in the managed networks. Thus we confirm that the SIA system enables security managers to deal with security threats efficiently.
Year
Venue
Keywords
2005
COMPUTING AND INFORMATICS
ESM (Enterprise Security Management), SIM (Security Information Management), SIA (Security Information Alert), IDS (Intrusion Detection System)
Field
DocType
Volume
Intrusion,Computer science,Computer security,Information protection policy,Security information and event management,Intrusion detection system
Journal
24
Issue
ISSN
Citations 
2
1335-9150
1
PageRank 
References 
Authors
0.37
8
5
Name
Order
Citations
PageRank
Keunhee Han1223.50
Il-gon Kim2245.91
Kang-Won Lee344531.99
Ji-yeon Choi410.37
Sang-hun Jeon541.33