Heterogeneous Sensor Correlation: A Case Study of Live Traffic Analysis
نویسندگان
چکیده
As enterprises deploy multiple intrusion detection sensors at key points in their networks, the issue of correlating messages from these sensors becomes increasingly important. A correlation capability reduces alert volume, and potentially improves detection performance through sensor reinforcement or complementarity. Correlation is especially advantageous when heterogeneous sensors are employed because of the potential to aggregate different views of the same incident. Emerging standards for sensor interoperability with respect to alert reporting facilitate the function of correlation engines, but these standards are still at an early stage of development. Furthermore, it is apparent that these standards will not enforce uniformity in, for example, attack description, complicating the task of correlation. The immature state of standards and nonuniformity of reporting both argue for correlation technologies that are robust, flexible, and function with comparatively few underlying assumptions. Herein, we present a case study of correlating several sensors listening to live traffic using a probabilistic correlation approach.
منابع مشابه
Extending Intrusion Detection with Alert Correlation and Intrusion Tolerance
Intrusion detection is an important security tool. It has the possibility to provide valuable information about the current status of security. However, as enterprises deploy multiple intrusion detection sensors at key points in their networks, the issue of correlating messages from these sensors becomes increasingly important. A correlation capability reduces alert volume, and potentially impr...
متن کاملThird-order Decentralized Safe Consensus Protocol for Inter-connected Heterogeneous Vehicular Platoons
In this paper, the stability analysis and control design of heterogeneous traffic flow is considered. It is assumed that the traffic flow consists of infinite number of cooperative non-identical vehicular platoons. Two different networks are investigated in stability analysis of heterogeneous traffic flow: 1) inter-platoon network which deals with the communication topology of lead vehicles and...
متن کاملAn Adaptive Weighted Fuzzy Controller Applied on Quality of Service of Intelligent 5G Environments
in computational intelligence area, it is suitable to fulfill the analysis in order to interpret the concept and sources of uncertainty and the conditions of its incidence, and hence pursuit for reliable techniques of dealing with it. Dealing with uncertainties in this case is a challenging and multidisciplinary activity. So, there is a need for a capable tool for modeling, control, and analyti...
متن کاملHeterogeneous Stream Processing and Crowdsourcing for Urban Traffic Management
Urban traffic gathers increasing interest as cities become bigger, crowded and “smart”. We present a system for heterogeneous stream processing and crowdsourcing supporting intelligent urban traffic management. Complex events related to traffic congestion (trends) are detected from heterogeneous sources involving fixed sensors mounted on intersections and mobile sensors mounted on public transp...
متن کاملThree Dimensional Localization of an Unknown Target Using Two Heterogeneous Sensors
Heterogeneous wireless sensor networks consist of some different types of sensor nodes deployed in a particular area. Different sensor types can measure different quantity of a source and using the combination of different measurement techniques, the minimum number of necessary sensors is reduced in localization problems. In this paper, we focus on the single source localization in a heterogene...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2001