CPL - Chalmers Publication Library
| Utbildning | Forskning | Styrkeområden | Om Chalmers | In English In English Ej inloggad.

Guidance for Selecting Data Collection Mechanisms for Intrusion Detection

Ulf Larson (Institutionen för data- och informationsteknik, Datorteknik (Chalmers)) ; Stefan Lindskog ; Erland Jonsson (Institutionen för data- och informationsteknik, Nätverk och system (Chalmers) )
Handbook of Research on Emerging Developments in Data Privacy p. 469. (2014)
[Kapitel]

This chapter aims at providing a clear and concise picture of data collection for intrusion detection. It provides a detailed explanation of generic data collection mechanism components and the interaction with the environment, from initial triggering to output of log data records. Taxonomies of mechanism characteristics and deployment considerations are provided and discussed. Furthermore, guidelines and hints for mechanism selection and deployment are provided. Finally, this chapter presents a set of strategies for determining what data to collect, and it also discusses some of the challenges in the field. An appendix providing a classification of 50 studied mechanisms is also provided. This chapter aims at assisting intrusion detection system developers, designers, and operators in selecting mechanisms for resource efficient data collection.

Nyckelord: computer security, intrusion detection, data collection



Den här publikationen ingår i följande styrkeområden:

Läs mer om Chalmers styrkeområden  

Denna post skapades 2015-01-27.
CPL Pubid: 211568