首页> 外文会议>International Conference on Information Assurance and Security >Hierarchical object log format for normalisation of security events
【24h】

Hierarchical object log format for normalisation of security events

机译:用于安全事件规范化的分层对象日志格式

获取原文

摘要

The differences in log file formats employed in a variety of services and applications remain to be a problem for security analysts and developers of intrusion detection systems. The proposed solution, i.e. the usage of common log formats, has a limited utilization within existing solutions for security management. In our paper, we reveal the reasons for this limitation. We show disadvantages of existing common log formats for normalisation of security events. To deal with it we have created a new log format that fits for intrusion detection purposes and can be extended easily. Taking previous work into account, we would like to propose a new format as an extension to existing common log formats, rather than a standalone specification.
机译:对于安全分析人员和入侵检测系统开发人员而言,在各种服务和应用程序中使用的日志文件格式的差异仍然是一个问题。所提出的解决方案,即通用日志格式的使用,在用于安全管理的现有解决方案中具有有限的利用。在我们的论文中,我们揭示了这种限制的原因。我们展示了用于安全事件规范化的现有通用日志格式的缺点。为了解决这个问题,我们创建了一种新的日志格式,该格式适合入侵检测目的,并且可以轻松扩展。考虑到以前的工作,我们想提出一种新格式,作为对现有常见日志格式的扩展,而不是一个独立的规范。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号