Network Security White Papers
Improving the Database Logging Performance of the Snort Network Intrusion Detection Sensor
Overview Network intrusion detection systems have become one of several invaluable tools to safeguard critical infrastructure and information. Publicly available Network Intrusion Detection Systems (NIDS) such as Snort and Bro as well as a large number of commercial systems complement other security mechanisms by passively monitoring a network link for possible intrusions and other security breaches. Alerts about possible violations are forwarded to security personal and are often also stored in databases for further analysis and correlation. The performance of a NIDS can be described by its ability to detect true attacks in the stream of network traffic it observes. In addition to the sophistication of the intrusion detection algorithm employed, processing speed is a key consideration for the overall performance.
| Publisher | University of Notre Dame | File Format | |
|---|---|---|---|
| Date Published | November 2003 | ||
| Format | White Papers | ||
| Topics | |||



