A prototype implementation of a network-level intrusion detection system. Technical report number CS91-11
Description: This paper presents the implementation of a prototype network level intrusion detection system. The prototype system monitors base level information in network packets (source, destination, packet size, time, and network protocol), learning the normal patterns and announcing anomalies as they occur. The goal of this research is to determine the applicability of current intrusion detection technology to the detection of network level intrusions. In particular, the authors are investigating the possibility of using this technology to detect and react to worm programs.
Date: May 15, 1991
Creator: Heady, R.; Luger, G.F.; Maccabe, A.B.; Servilla, M. & Sturtevant, J.
Item Type: Refine your search to only Report
Partner: UNT Libraries Government Documents Department