Network Security White Papers

Host-Based Intrusion Detection Systems

Overview Host-based Intrusion Detection Systems can be used to determine if a system has been compromised and can warn administrators if that happens. This paper recognizes four different methods of host-based intrusion detection: filesystem monitoring, logfile analysis, connection analysis and kernel-based intrusion detection. Implementations of intrusion detection systems generally use one of these four methods to detect intrusions. This paper has studied multiple implementations, determined their features, ways of evading their restrictions and ways to prevent evasion. The paper has also given insight into the reasons why certain systems should or should not be used and to what extent, based on their effectiveness and ease of configuration and maintenance.

Further White Paper Details
PublisherUniversity of Amsterdam File FormatPDF
Date PublishedFebruary 2005
FormatWhite Papers   
Topics
E4 embraces web 2.0 audience

E4 embraces web 2.0 audience

Case study: How the Channel 4's teen channel put its mind to building a community website... more

Danone on health kick with Itil

Danone on health kick with Itil

Case study: Food company making IT easier to manage more

Cheat Sheet: Cloud computing

Cheat Sheet: Cloud computing

A tech storm is brewing...  more


Quick Sitemap Links: