Integrating intrusion detection and network management

NOMS(2002)

引用 46|浏览25
暂无评分
摘要
The problems of detecting and resolving performance in distributed systems have become increasingly important and challenging due to the tremendous growth in network-based services. There is a need for a predictive and proactive approach so that appropriate and timely actions can be taken before service disruptions escalate and become widespread. A network management system (NMS) is responsible for monitoring the performance of a network. An intrusion detection system (IDS) is responsible for detecting and responding to intrusions. The current practice is that NMS and IDS are independent to each other in a network. There is little integration and information sharing between the two. We outline an approach to integrate NMS and IDS so that the security capabilities of network management can be enhanced and the performance of IDS can be improved.
更多
查看译文
关键词
network performance monitoring,distributed denial of service attacks,network-based services,network security,security network management,distributed systems,nms-ids integration,knowledge base,intrusion detection system,hierarchical system,internet,telecommunication network management,telecommunication security,id agents,service disruptions,software agents,network management system,security of data,computer networks,information security,network management,intrusion detection,distributed denial of service,anomaly detection,distributed system,technology management
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要