direkt zum Inhalt springen

direkt zum Hauptnavigationsmenü

Sie sind hier

TU Berlin

Inhalt des Dokuments

Gregor Schaffrath's Publications

Conceptual Integration of Flow-Based and Packet-Based Network Intrusion Detection
Citation key SS-CIFBPBNID-08
Author Schaffrath, Gregor and Stiller, Burkhard
Title of Book Resilient Services and Networks
Pages 190–194
Year 2008
ISBN 978-3-540-70586-4
ISSN 0302-9743
Online ISSN 1611-3349
DOI http://dx.doi.org/10.1007/978-3-540-70587-1_17
Address Berlin / Heidelberg, Germany
Volume 5127
Month July
Editor Hausheer, David and Schönwälder, Jürgen
Publisher Springer
Series Lecture Notes in Computer Science (LNCS)
Abstract Network-based Intrusion Detection Systems aim at the detection of malicious activities by an inspection of network traffic. Since network link speeds and traffic volume grew over the last years, payload-based analysis became difficult, leading to the development of alternative approaches for flowbased analysis. Although each approach alone suffers a set of drawbacks, a few experiments with hybrid approaches show potential for synergies. This work analyses these drawbacks in order to develop a conceptual framework for hybrid approaches, integrating the two concepts in a fashion to compensate for their respective weaknesses proposed.
Download Bibtex entry

Zusatzinformationen / Extras

Quick Access:

Schnellnavigation zur Seite über Nummerneingabe

Auxiliary Functions