IDMEF-Based Architecture of Large-Scale Cooperative IDS System

张民,罗光春
DOI: https://doi.org/10.3969/j.issn.1001-0548.2009.02.24
2009-01-01
Abstract:Intrusion detection message exchange format (IDMEF) standard has been widely used in intrusion detection system (IDS). This paper proposes an architecture of large scale cooperative IDS based on IDMEF. The design and implementation of the cooperative IDS are discussed by the means of Prelude framework and development suite. The deployment and application of this architecture on CERNET are finally analyzed.
What problem does this paper attempt to address?