WARDEN: realtime sharing of detected threats between CSIRT teams
Identifikátory výsledku
Kód výsledku v IS VaVaI
<a href="https://www.isvavai.cz/riv?ss=detail&h=RIV%2F63839172%3A_____%2F13%3A10130198" target="_blank" >RIV/63839172:_____/13:10130198 - isvavai.cz</a>
Výsledek na webu
<a href="http://reg.first.org/papers/Files/c10e9342-540c-4010-9f7a-4797f3a1c454/FIRST13_Warden_slides_ph_1.pdf" target="_blank" >http://reg.first.org/papers/Files/c10e9342-540c-4010-9f7a-4797f3a1c454/FIRST13_Warden_slides_ph_1.pdf</a>
DOI - Digital Object Identifier
—
Alternativní jazyky
Jazyk výsledku
angličtina
Název v původním jazyce
WARDEN: realtime sharing of detected threats between CSIRT teams
Popis výsledku v původním jazyce
The Warden project is a sharing platform for detected security events, whose characteristics can be watched and used by members of the network for evading possible security threats. There exists large body of automatically detected security events, be ithoneypot machines or IDS systems at campuses, golden mine of netflow data or dictionary attacks from log data of production machines. Manual distribution of this events is laborious and generates further work which the team is usually not able to cover,causing distortion, losses and unneeded delays. In our CESNET2 national research and educational network, we attempted to solve these dilemmas by designing the Warden - open early warning system, which enables security teams to proactively and efficiently share and use information relating to detected network and service anomalies that had been generated by various systems.
Název v anglickém jazyce
WARDEN: realtime sharing of detected threats between CSIRT teams
Popis výsledku anglicky
The Warden project is a sharing platform for detected security events, whose characteristics can be watched and used by members of the network for evading possible security threats. There exists large body of automatically detected security events, be ithoneypot machines or IDS systems at campuses, golden mine of netflow data or dictionary attacks from log data of production machines. Manual distribution of this events is laborious and generates further work which the team is usually not able to cover,causing distortion, losses and unneeded delays. In our CESNET2 national research and educational network, we attempted to solve these dilemmas by designing the Warden - open early warning system, which enables security teams to proactively and efficiently share and use information relating to detected network and service anomalies that had been generated by various systems.
Klasifikace
Druh
A - Audiovizuální tvorba
CEP obor
IN - Informatika
OECD FORD obor
—
Návaznosti výsledku
Projekt
<a href="/cs/project/LM2010005" target="_blank" >LM2010005: Velká infrastruktura CESNET</a><br>
Návaznosti
P - Projekt vyzkumu a vyvoje financovany z verejnych zdroju (s odkazem do CEP)
Ostatní
Rok uplatnění
2013
Kód důvěrnosti údajů
S - Úplné a pravdivé údaje o projektu nepodléhají ochraně podle zvláštních právních předpisů
Údaje specifické pro druh výsledku
ISBN
—
Místo vydání
Bangkok, Thajské království
Název nakladatele resp. objednatele
FIRST.org, Inc.
Verze
—
Identifikační číslo nosiče
—