首页> 外文OA文献 >Applying Expert System Technology in a Distributed Monitoring System: An Efficient Response Mechanism for Unknown Threats
【2h】

Applying Expert System Technology in a Distributed Monitoring System: An Efficient Response Mechanism for Unknown Threats

机译:在分布式监控系统中应用专家系统技术:针对未知威胁的有效响应机制

摘要

Detecting unknown threats is a paradox; how do you detect a threat if it is not known to exist? The answer is that unknown threat detection is the process of making a previously unknown threat identifiable in the shortest possible time frame. This thesis examines the possibility of creating an unknown threat detection mechanism that security experts can use for developing a flexible protection system for networks. A system that allows the detection of unknown threats through distributed host based monitoring and the incorporation of dynamic and flexible logics with situational knowledge is described as well as the mechanisms used to develop such a system is illustrated. The system not only allows the detection of new threats but does so in a fast and efficient manner to increase the available time for responding to these threats.
机译:发现未知威胁是一个矛盾。如果未知威胁存在,您如何检测?答案是未知威胁检测是指在尽可能短的时间内确定先前未知威胁的过程。本文探讨了创建未知威胁检测机制的可能性,安全专家可以使用该机制来开发网络的灵活保护系统。描述了一种系统,该系统允许通过基于分布式主机的监视来检测未知威胁,并将动态和灵活的逻辑与情况知识相结合,并说明了用于开发此类系统的机制。该系统不仅允许检测新威胁,而且还可以快速有效地进行检测,以增加响应这些威胁的可用时间。

著录项

  • 作者

    Cooke HBM;

  • 作者单位
  • 年度 2005
  • 总页数
  • 原文格式 PDF
  • 正文语种 en
  • 中图分类

相似文献

  • 外文文献
  • 中文文献
  • 专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号