Research on Streaming Data Integration System about Security Threat Monitor

Aiping Li,Jiajia Miao,Yan Jia
DOI: https://doi.org/10.1007/978-3-642-10240-0_6
2009-01-01
Abstract:Computer networks have become ubiquitous and integral part of the nation's critical infrastructure. How to grasp the real-time overall situation of the network security is very noteworthy to study. An increasing number of network security systems have been deployed in the backbone and the gateways of enterprises, including various Nett low systems, IDS, VDS, VS and firewalls. These products make great contributions in enhancing the network security. However, current network security systems are independent and autonomous. Consequently, such solutions cannot figure out an overview of the network security situation. In another perspective, building a new global monitoring system will suffer from redundant construction and longer deploying time. We propose a novel and high assurance solution called GS-TMS which reuses the log data generated by the existing systems. Based on the data stream and data integration technologies, GS-TMS provides a desirable capability in quickly building a large-scale distributed network monitoring system. Furthermore, GS-TMS has additional notable advantages over current monitoring systems in scalability and flexibility.
What problem does this paper attempt to address?