首页| JavaScript| HTML/CSS| Matlab| PHP| Python| Java| C/C++/VC++| C#| ASP| 其他|
购买积分 购买会员 激活码充值

您现在的位置是:虫虫源码 > 其他 > dilca分布式IDMEF逻辑关联结构

dilca分布式IDMEF逻辑关联结构

资 源 简 介

DILCA is a distributed logical correlation and reaction architecture featuring collection and correlation of IDMEF formatted log events (Intrusion Detection Message Exchange Format - RFC 4765) through a multi-step signature based system. ILCE (IDMEF Logical Correlation Engine) is the core of the architecture, which parses logs on the fly and generates reaction events on previously created policies (builted into multi-step signature system). Therefore these reaction events are sent to each DILCA Manager node, and forwarded to the right target Agent handled by that node (DILCA Agent/Plugin). Every Agent/Plugin sends local IDMEF logs to the corresponding DILCA manager and receives reaction events from it. IDXP (Intrusion Detection Exchance Protocol - RFC 4767) is the standard protocol used during IDMEF,Signatures and Reactions exchanges. News about the Project: News Page For further informa

文 件 列 表

.
dilca-manager_0.0.1.win32
LICENSE
dilca-manager_0.0.1.win32
VIP VIP
0.174286s