TY - GEN
T1 - Improving security management through passive network observation
AU - Morin, Benjamin
AU - Thomas, Yohann
AU - Debar, Hervé
PY - 2006/1/1
Y1 - 2006/1/1
N2 - Detailed and reliable knowledge of the characteristics of an information system is becoming a very important feature for operational security. Unfortunately, vulnerability assessment tools have important side effects on the monitored information systems. In this paper, we propose an approach to gather or deduce information similar to vulnerability assessment reports, based on passive network observation. Information collected goes beyond classic server vulnerability assessment, enabling compliance verification of desktop clients.
AB - Detailed and reliable knowledge of the characteristics of an information system is becoming a very important feature for operational security. Unfortunately, vulnerability assessment tools have important side effects on the monitored information systems. In this paper, we propose an approach to gather or deduce information similar to vulnerability assessment reports, based on passive network observation. Information collected goes beyond classic server vulnerability assessment, enabling compliance verification of desktop clients.
U2 - 10.1109/ARES.2006.74
DO - 10.1109/ARES.2006.74
M3 - Conference contribution
AN - SCOPUS:33750945128
SN - 0769525679
SN - 9780769525679
T3 - Proceedings - First International Conference on Availability, Reliability and Security, ARES 2006
SP - 382
EP - 389
BT - Proceedings - First International Conference on Availability, Reliability and Security, ARES 2006
PB - IEEE Computer Society
T2 - 1st International Conference on Availability, Reliability and Security, ARES 2006
Y2 - 20 April 2006 through 22 April 2006
ER -