A Global Stream-Based Network Threat Monitoring System

缪嘉嘉,张瞩熹,贾焰,吴泉源
DOI: https://doi.org/10.3969/j.issn.1007-130x.2009.12.007
2009-01-01
Abstract:Computer networks have become a ubiquitous and integral part of the nation's critical infrastructure. In this paper,we propose a novel solution called GS-TMS (Global Stream-based Threat Monitoring System) which reuses the log data generated by the existing widely-spread security systems. Based on the data stream and data integration technologies,GS-TMS provides a desirable capability in quickly building a large-scale distributed network monitoring system. Furthermore,GS-TMS has additional notable advantages over the current monitoring systems in scalability and flexibility.
What problem does this paper attempt to address?