Network intrusion detection and prevention:concepts and techniques

Saved in:
Bibliographic Details
Main Authors: Ghorbani Ali, 1954-
Group Author: Tavallaee Mahbod.; Lu Wei, 1980-
Published: Springer,
Publisher Address: New York
Publication Dates: c2010.
Literature type: Book
Language: English
Series: Advances in information security ; ADIS 47
Subjects:
Carrier Form: xviii, 212 p.: ill. ; 24 cm.
ISBN: 9780387887708 (hbk.)
0387887709 (hbk.)
Index Number: TP393
CLC: TP393.08
Call Number: TP393.08/G427-1
Contents: Includes bibliographical references and index.
Network Attacks. -- Detection Approaches. -- Data Collection. -- Theoretical Foundation Of Detection. -- Architecture and Implementation. -- Alert Management and Correlation. -- Evaluation Criteria. -- Intrusion Response. -- Examples of Commercial and Open Source IDSs
Intrusion Detection and Prevention is a rapidly growing field that deals with detecting and responding to malicious network traffic and computer misuse. Intrusion detection is the process of identifying and (possibly) responding to malicious activities targeted at computing and network resources. Any hardware or software automation that monitors, detects or responds to events occurring in a network or on a host computer is considered relevant to the intrusion detection approach. Different intrusion detection systems provide varying functionalities and benefits. Network Intrusion Detection and Prevention: Concepts and Techniques provides detailed and concise information on different types of attacks, theoretical foundation of attack detection approaches, implementation, data collection, evaluation, and intrusion response. Additionally, it provides an overview of some of the commercially/publicly available intrusion detection and response systems--Cover.