TY - GEN
T1 - An alert communication infrastructure for a decentralized attack prevention framework
AU - García, Joaquín
AU - Borrell, Joan
AU - Jaeger, Michael A.
AU - Mühl, Gero
PY - 2005/1/1
Y1 - 2005/1/1
N2 - The cooperation between the different entities of a decentralized prevention system can be solved efficiently using the publish/subscribe communication model. Here, clients can share and correlate alert information about the systems they monitor. In this paper, we present the advantages and convenience in using this communication model for a general decentralized prevention framework. Additionally, we outline the design for a specific architecture, and evaluate our design using a freely available publish/subscribe message oriented middleware.
AB - The cooperation between the different entities of a decentralized prevention system can be solved efficiently using the publish/subscribe communication model. Here, clients can share and correlate alert information about the systems they monitor. In this paper, we present the advantages and convenience in using this communication model for a general decentralized prevention framework. Additionally, we outline the design for a specific architecture, and evaluate our design using a freely available publish/subscribe message oriented middleware.
KW - Detection and reaction systems
KW - Network security
KW - Publish/subscribe communication model
UR - https://www.scopus.com/pages/publications/42749102944
U2 - 10.1109/ccst.2005.1594878
DO - 10.1109/ccst.2005.1594878
M3 - Conference contribution
AN - SCOPUS:42749102944
SN - 0780392450
SN - 9780780392458
T3 - Proceedings - International Carnahan Conference on Security Technology
BT - 39th Annual 2005 International Carnahan Conference on Security Technology, CCST'05
PB - Institute of Electrical and Electronics Engineers Inc.
T2 - 39th Annual 2005 International Carnahan Conference on Security Technology, CCST'05
Y2 - 11 October 2005 through 14 October 2005
ER -