GI LogoGI Logo
  • Login
Digital Library
    • All of DSpace

      • Communities & Collections
      • Titles
      • Authors
      • By Issue Date
      • Subjects
    • This Collection

      • Titles
      • Authors
      • By Issue Date
      • Subjects
Digital Library Gesellschaft für Informatik e.V.
GI-DL
    • English
    • Deutsch
  • English 
    • English
    • Deutsch
View Item 
  •   DSpace Home
  • Lecture Notes in Informatics
  • Proceedings
  • DFN-Forum Kommunikationstechnologien
  • P271 - 10. DFN-Forum Kommunikationstechnologien
  • View Item
JavaScript is disabled for your browser. Some features of this site may not work without it.
  •   DSpace Home
  • Lecture Notes in Informatics
  • Proceedings
  • DFN-Forum Kommunikationstechnologien
  • P271 - 10. DFN-Forum Kommunikationstechnologien
  • View Item

On the Perception of Risk Assessment in Intrusion Detection Systems

Author:
Golling, Mario [DBLP] ;
Koch, Robert [DBLP] ;
Dreo Rodosek, Gabi [DBLP]
Abstract
Especially in the area of Intrusion Detection, the concept as well as the understanding of the term "risk" is of fundamental irnportance. Generally, risk assessment represents an important means of evaluating certain situations, plans, events or systems in a systematic and comprehensive procedure. As in other areas, within the field of IT security, the systematic assessment process (risk analysis) also aims at recomrnending how to allocate available resources. Referring to this, both, the categorization oftraffic (whether traffic has to be classified as an attack or not - "benign vs. malicious") as we11 as a corresponding estimation of the expected damage (severity) are of central importance. Therefore, within this publication, the authors address the following questions in detail: (1) To what extent are the detection results of different IDSs comparable - with regard to the assessment of the risk / extent of damage - or are there strong deviations? (2) How do both vendor-dependent and vendor-independent alerts address the topic of risk assessment and enable the implementation of a comprehensive risk concept? To this end, at the heart of this paper, an overview as weil as an evaluation of important representatives of open source IDSs is presented, focusing on methods for risk assessment resp. risk rating including cross-vendor risk rating and the Common Vulnerability Scoring System (CVSS). Furthermore, the paper also contains a brief demise of the most important representatives of comrnercial IDSs.
  • Citation
  • BibTeX
Golling, M., Koch, R. & Dreo Rodosek, G., (2017). On the Perception of Risk Assessment in Intrusion Detection Systems. In: Müller, P., Neumair, B., Raiser, H. & Dreo Rodosek, G. (Hrsg.), 10. DFN-Forum Kommunikationstechnologien. Bonn: Gesellschaft für Informatik e.V.. (S. 21-30).
@inproceedings{mci/Golling2017,
author = {Golling, Mario AND Koch, Robert AND Dreo Rodosek, Gabi},
title = {On the Perception of Risk Assessment in Intrusion Detection Systems},
booktitle = {10. DFN-Forum Kommunikationstechnologien},
year = {2017},
editor = {Müller, Paul AND Neumair, Bernhard AND Raiser, Helmut AND Dreo Rodosek, Gabi} ,
pages = { 21-30 },
publisher = {Gesellschaft für Informatik e.V.},
address = {Bonn}
}
DateienGroesseFormatAnzeige
paper02.pdf583.9Kb PDF View/Open

Haben Sie fehlerhafte Angaben entdeckt? Sagen Sie uns Bescheid: Send Feedback

More Info

ISBN: 978-3-88579-665-7
ISSN: 1617-5468
xmlui.MetaDataDisplay.field.date: 2017
Language: en (en)
Content Type: Text/Conference Paper

Keywords

  • Network Security
  • Intrusion Detection
  • Risk Rating
  • Risk Assessment
  • Risk Severity
Collections
  • P271 - 10. DFN-Forum Kommunikationstechnologien [14]

Show full item record


About uns | FAQ | Help | Imprint | Datenschutz

Gesellschaft für Informatik e.V. (GI), Kontakt: Geschäftsstelle der GI
Diese Digital Library basiert auf DSpace.

 

 


About uns | FAQ | Help | Imprint | Datenschutz

Gesellschaft für Informatik e.V. (GI), Kontakt: Geschäftsstelle der GI
Diese Digital Library basiert auf DSpace.