Logo des Repositoriums
 

CarmentiS: A Co-Operative Approach Towards Situation Awareness and Early Warning for the Internet

dc.contributor.authorGrobauer, Bernd
dc.contributor.authorMehlau, Jens Ingo
dc.contributor.authorSander, Jürgen
dc.contributor.editorGöbel, Oliver
dc.contributor.editorSchadt, Dirk
dc.contributor.editorFrings, Sandra
dc.contributor.editorHase, Hardo
dc.contributor.editorGünther, Detlef
dc.contributor.editorNedon, Jens
dc.date.accessioned2019-06-04T08:24:21Z
dc.date.available2019-06-04T08:24:21Z
dc.date.issued2006
dc.description.abstractAbstract. Although plenty of organizations collect sensor data such as IDS alerts or darknet flows, local analysis has its definite limits when it comes to derive conclusions about happenings and trends within the Internet as a whole. CarmentiS, a joint effort of the early warning working group within the German CERT association, provides an infrastructure and organizational framework for sharing, correlating and cooperatively analyzing sensor data. The infrastructure allows organizations to submit sensor data – at the moment, net flows and IDS alerts are treated – over a secure channel to a central database. Cooperative analysis of the data is made possible via a secure web front end allowing analysts of participating CERTs to create and execute analysis profiles as well as share and discuss analysis results. Thus correlating sensor data and pooling know how and resources for analysis from different sites, CarmentiS provides a framework for a co-operative approach towards situation awareness and early warning for the Internet. This article gives an overview of the CarmentiS infrastructure and organizational framework, and describes the current status of the project. It also addresses open questions that can only be solved by experimenting with co-operative analysis and gives an outlook of possible further developments of the CarmentiS approach towards improved situation awareness and early warning.en
dc.identifier.isbn978-3-88579-191-1
dc.identifier.pissn1617-5468
dc.identifier.urihttps://dl.gi.de/handle/20.500.12116/23461
dc.language.isoen
dc.publisherGesellschaft für Informatik e. V.
dc.relation.ispartofIT-Incident Management & IT-Forensics - IMF 2006
dc.relation.ispartofseriesLecture Notes in Informatics (LNI) - Proceedings, Volume P-97
dc.titleCarmentiS: A Co-Operative Approach Towards Situation Awareness and Early Warning for the Interneten
dc.typeText/Conference Paper
gi.citation.endPage66
gi.citation.publisherPlaceBonn
gi.citation.startPage55
gi.conference.dateOctober, 18th - 19th, 2006
gi.conference.locationStuttgart
gi.conference.sessiontitleRegular Research Papers

Dateien

Originalbündel
1 - 1 von 1
Lade...
Vorschaubild
Name:
55.pdf
Größe:
487.18 KB
Format:
Adobe Portable Document Format