Combining Cisco NetFlow Exports with Relational Database Technology for Usage Statistics, Intrusion Detection, and Network Forensics.
Bill NicklessJohn-Paul NavarroLinda WinklerPublished in: LISA (2000)
Keyphrases
- intrusion detection
- network traffic
- network intrusion
- intrusion detection system
- network attacks
- relational database technology
- intrusion prevention
- anomaly detection
- network traffic data
- network security
- usage statistics
- network intrusion detection
- computer networks
- intrusion detection and prevention
- high detection rate
- database technology
- detecting anomalous
- computer security
- wireless sensor networks
- relational database systems
- information security
- network intrusions
- worm detection
- normal behavior
- traffic data
- cyber security
- data management
- relational databases
- distributed intrusion detection
- alert correlation
- database management systems
- information systems
- data mining