Continuous Assessment of a Unix Configuration: Integrating Intrusion Detection and Configuration Analysis
نویسندگان
چکیده
Computer security is a topic of growing concern because, on the one hand, the power of computers continues to increase at exponential speed and all computers are virtually connected to each other and because, on the other hand, the lack of reliability of software systems may cause dramatic and unrecoverable damage to computer systems and hence to the newly emerging computerized society. Among the possible approaches to improve the current situation, expert systems have been advocated to be an important one. Typical tasks that such expert systems attempt to achieve include finding system vulnerabilities and detecting malicious behaviours of users. In this paper, we extend our intrusion detection system ASAX with a deductive subsystem that allows us to assess the security level of a software configuration on a real time basis. By coupling the two subsystems — intrusion detection and configuration analysis — we moreover achieve a better tuning of the intrusion detection since the system has only to enable intrusion detection rules that are specifically required by the current state of the configuration. We also report some preliminary performance measurements, which suggest that our approach can be practical in real life contexts.
منابع مشابه
Rubicon: An Extensible Integrated Traffic Shaping Firewall and Intrusion Detection System
One of the traditional bastions of security in a computer network is the firewall. Whilst only a single element of a secure network topology, they are a vital feature which allows some amount of network traffic filtering at security perimeters in an organisation. Another useful element has been the Intrusion Detection System, both network-based (NIDS) which looks at network traffic and protocol...
متن کاملAssessment of canal configuration in mandibular anterior teeth extracted in the city of Isfahan and patients treatedin Endodontics Department of Isfahan Faculty of Dentistry
Assessment of canal configuration in mandibular anterior teeth extracted in the city of Isfahan and patients treated in Endodontics Department of Isfahan Faculty of Dentistry Dr. SM. Hasheminiya*- Dr. SM. Hosseini Harandi** - Dr. M. Narimani** *- Assistant professor of Endodontics Dept.- Faculty of Dentistry - Isfahan University of Medical Sciences. ** - Dentist. Background and aim: Recogni...
متن کاملDISCRETE SIZE AND DISCRETE-CONTINUOUS CONFIGURATION OPTIMIZATION METHODS FOR TRUSS STRUCTURES USING THE HARMONY SEARCH ALGORITHM
Many methods have been developed for structural size and configuration optimization in which cross-sectional areas are usually assumed to be continuous. In most practical structural engineering design problems, however, the design variables are discrete. This paper proposes two efficient structural optimization methods based on the harmony search (HS) heuristic algorithm that treat both discret...
متن کاملA heuristic method for combined optimization of layout design and cluster configuration in continuous productions
Facility layout problems have been generally solved either hierarchically or integrated into other phases of plant design. In this paper, a hybrid method is introduced so that clustering and facilities layout can be simultaneously optimized. Each cluster is formed by a group of connected facilities and selection of the most appropriate cluster configuration is aimed. Since exact method by MIP i...
متن کاملExperiences with Tripwire: Using Integrity Checkers for Intrusion Detection
Tripwire is an integrity checking program written for the UNIX environment. It gives system administrators the ability to monitor file systems for added, deleted, and modified files. Intended to aid intrusion detection, Tripwire was officially released on November 2, 1992. It is being actively used at thousands of sites around the world. Published in volume 26 of comp.sources.unix on the USENET...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 1997