Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
Skip to content
Licensed Unlicensed Requires Authentication Published by De Gruyter December 14, 2007

A Network of IDS Sensors for Attack Statistics

  • T. Dörges , O. Gellert and K.-P. Kossakowski

1 ABSTRACT

Intrusion detection systems (IDS) serve to assess what types of risks computer networks are facing. Since a single IDS usually doesn't “see” but a small portion of a network, it is advisable to try to acquire a more holistic view by placing several (independent) sensors and to analyse all the data gathered.

One of the goals of the project was to look at the Internet in its entirety in order to better understand how attacks compare in different subnets or regions. This is already very useful when investigating worms and viruses and could eventually lead to an early warning system.

This article will discuss the actual realisation of a distributed sensor network as well as (some) analyses and statistics based upon the data gathered.

Published Online: 2007-12-14
Published in Print: 2004-December

© Copyright by K.G. Saur Verlag 2004

Downloaded on 30.7.2024 from https://www.degruyter.com/document/doi/10.1515/PIKO.2004.202/html
Scroll to top button