Intrusion Detection Networks: A Key to Collaborative Security
暫譯: 入侵偵測網路:協作安全的關鍵
Carol Fung, Raouf Boutaba
- 出版商: Auerbach Publication
- 出版日期: 2013-11-19
- 售價: $3,980
- 貴賓價: 9.5 折 $3,781
- 語言: 英文
- 頁數: 261
- 裝訂: Hardcover
- ISBN: 1466564121
- ISBN-13: 9781466564121
-
相關分類:
資訊安全
立即出貨 (庫存 < 3)
相關主題
商品描述
The rapidly increasing sophistication of cyber intrusions makes them nearly impossible to detect without the use of a collaborative intrusion detection network (IDN). Using overlay networks that allow an intrusion detection system (IDS) to exchange information, IDNs can dramatically improve your overall intrusion detection accuracy.
Intrusion Detection Networks: A Key to Collaborative Security focuses on the design of IDNs and explains how to leverage effective and efficient collaboration between participant IDSs. Providing a complete introduction to IDSs and IDNs, it explains the benefits of building IDNs, identifies the challenges underlying their design, and outlines possible solutions to these problems. It also reviews the full-range of proposed IDN solutions—analyzing their scope, topology, strengths, weaknesses, and limitations.
- Includes a case study that examines the applicability of collaborative intrusion detection to real-world malware detection scenarios
- Illustrates distributed IDN architecture design
- Considers trust management, intrusion detection decision making, resource management, and collaborator management
The book provides a complete overview of network intrusions, including their potential damage and corresponding detection methods. Covering the range of existing IDN designs, it elaborates on privacy, malicious insiders, scalability, free-riders, collaboration incentives, and intrusion detection efficiency. It also provides a collection of problem solutions to key IDN design challenges and shows how you can use various theoretical tools in this context.
The text outlines comprehensive validation methodologies and metrics to help you improve efficiency of detection, robustness against malicious insiders, incentive-compatibility for all participants, and scalability in network size. It concludes by highlighting open issues and future challenges.
商品描述(中文翻譯)
隨著網路入侵的複雜性迅速增加,幾乎不可能在不使用協作入侵檢測網路 (IDN) 的情況下進行檢測。透過使用覆蓋網路,讓入侵檢測系統 (IDS) 之間能夠交換資訊,IDN 可以顯著提高整體的入侵檢測準確性。
入侵檢測網路:協作安全的關鍵 專注於 IDN 的設計,並解釋如何利用參與者 IDS 之間的有效且高效的協作。該書提供了 IDS 和 IDN 的完整介紹,解釋了建立 IDN 的好處,識別其設計背後的挑戰,並概述這些問題的可能解決方案。它還回顧了各種提議的 IDN 解決方案,分析其範圍、拓撲、優勢、劣勢和限制。
- 包括一個案例研究,檢視協作入侵檢測在現實世界惡意軟體檢測場景中的適用性
- 說明分散式 IDN 架構設計
- 考慮信任管理、入侵檢測決策、資源管理和協作者管理
本書提供了網路入侵的完整概述,包括其潛在損害和相應的檢測方法。涵蓋現有 IDN 設計的範圍,詳細闡述隱私、惡意內部人、可擴展性、搭便車者、協作激勵和入侵檢測效率。它還提供了一系列針對關鍵 IDN 設計挑戰的問題解決方案,並展示如何在此背景下使用各種理論工具。
該文本概述了全面的驗證方法和指標,以幫助您提高檢測效率、對惡意內部人的穩健性、所有參與者的激勵相容性以及網路規模的可擴展性。最後,強調了未解決的問題和未來的挑戰。