Network Security White Papers
SIDS - A System for Enterprise-Wide Intrusion Detection
Overview This paper presents the design and implementation of SIDS, the Simple Intrusion Detection System. The main focus in the design of SIDS was to try to overcome the design shortcomings that hinder most currently available intrusion detection systems. Such shortcomings include limited scalability, proprietary intercommunication protocols among the systems nodes and difficult updating procedures. To that effect the system implements a highly scalable distributed architecture that consists of various-level entities, such as sensors, collectors and analyzers. The processing load is spread among the system's nodes and audit information is aggregated as it travels from lower level entities to higher level ones.
| Publisher | National Technical University of Athens | File Format | |
|---|---|---|---|
| Date Published | May 2000 | ||
| Format | White Papers | ||
| Topics | |||



