Authors
Hervé Debar, Andreas Wespi
Publication date
2001
Journal
Recent Advances in Intrusion Detection
Pages
85-103
Publisher
Springer Berlin/Heidelberg
Description
This paper describes an aggregation and correlation algorithm used in the design and implementation of an intrusion-detection console built on top of the Tivoli Enterprise Console (TEC). The aggregation and correlation algorithm aims at acquiring intrusion-detection alerts and relating them together to expose a more condensed view of the security issues raised by intrusion-detection systems.
Total citations
Scholar articles
H Debar, A Wespi - International Workshop on Recent Advances in …, 2001