首页> 外文会议>International Workshop on Traffic Monitoring and Analysis >A Database of Anomalous Traffic for Assessing Profile Based IDS
【24h】

A Database of Anomalous Traffic for Assessing Profile Based IDS

机译:用于评估基于个人资料的IDS的异常流量数据库

获取原文

摘要

This paper aims at proposing a methodology for evaluating current IDS capabilities of detecting attacks targeting the networks and their services. This methodology tries to be as realistic as possible and reproducible, i.e. it works with real attacks and real traffic in controlled environments. It especially relies on a database containing attack traces specifically created for that evaluation purpose. By confronting IDS to these attack traces, it is possible to get a statistical evaluation of IDS, and to rank them according to their detection capabilities without false alarms. For illustration purposes, this paper shows the results obtained with 3 public IDS. It also shows how the attack traces database impacts the results got for the same IDS.
机译:本文旨在提出评估检测目标网络及其服务的攻击的当前IDS功能的方法。该方法尝试尽可能逼真,可重复,即它适用于受控环境中的真实攻击和实际流量。它尤其依赖于包含专门为该评估目的创建的攻击迹线的数据库。通过对这些攻击迹线构成ID,可以获得IDS的统计评估,并根据其检测功能对其进行排序而没有误报。出于说明目的,本文显示了3个公共ID获得的结果。它还显示了攻击迹线数据库如何影响相同的ID的结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号