Network Security White Papers
Sparta - A Mobile Agent Based Intrusion Detection System.
Overview Many companies employ a variety of tools to enforce their often vague security policies. The manual configuration of these tools is an error prone task and often causes inconsistencies that lead to undetected violations. This paper presents Sparta, a system that allows detecting security policy violations in a heterogeneous, networked environment. A simple pattern language is designed in order to express offending event correlations in a declarative manner. This allows specifying what to detect instead of how to detect. A fully distributed approach to find the given patterns is presented as well. It uses mobile agents to correlate event data instead of moving the whole information to a central location.
| Publisher | Vienna University of Technology | File Format | |
|---|---|---|---|
| Date Published | April 2002 | ||
| Format | White Papers | ||
| Topics | |||



