서지주요정보
네트워크 기반 침입 탐지시스템의 위험도 평가 모델 = Priority calculation model of network based intrusion detection system
서명 / 저자 네트워크 기반 침입 탐지시스템의 위험도 평가 모델 = Priority calculation model of network based intrusion detection system / 이은영.
발행사항 [대전 : 한국과학기술원, 2003].
Online Access 원문보기 원문인쇄

소장정보

등록번호

8014218

소장위치/청구기호

학술문화관(문화관) 보존서고

MCS 03031

휴대폰 전송

도서상태

이용가능(대출불가)

사유안내

반납예정일

리뷰정보

초록정보

In NIDS development, many methods were devised for detecting intrusion from network packet information. However most of NIDS events are false positive. Thus events are new burden for managing NIDS effciently. And priority of event doesn’t change after reforming vulnerability. The priority of the past events equals to that of the present events after correcting the vulnerability. The priority of event should be changed according to degree of correcting. We propose new priority calculating model in NIDS. The objective of this model is to reduce false positive and set priority of event dynamically. This model is using the information about attacker, that is, intention and knowledge of attacker. Basic events like scanning are stored to discriminate an attacker with intension. The attack ratio with respect to total requests is managed f or finding attacker’s intension. And recently announced attacks are classified a s higher priority than the older ones for judging knowledge of attacker. To reduce false positive, vulnerabilities of system are managed to separate false positive from events. By using this information, this model calculates priority of events.

서지기타정보

서지기타정보
청구기호 {MCS 03031
형태사항 vi, 31 p. : 삽화 ; 26 cm
언어 한국어
일반주기 저자명의 영문표기 : Eun-Young Lee
지도교수의 한글표기 : 이광형
지도교수의 영문표기 : Kwang-Hyung Lee
학위논문 학위논문(석사) - 한국과학기술원 : 전산학전공,
서지주기 참고문헌 : p. 30-31
QR CODE

책소개

전체보기

목차

전체보기

이 주제의 인기대출도서