Intrusion detection systems

Abstract

The automation of packet analysis, even partially, is very much desired, because packet analysis is time-consuming and requires technical knowledge and skills. This paper presents the Packet Analysis Ontology (PAO), a novel OWL ontology that covers the terminology of packet analysis, including concepts and properties, as well as their restrictions, to be used for knowledge representation and automated reasoning in this field. This ontology defines protocols and ports required for capturing the semantics of network activities, many of which are not defined in any other ontology.

Document Type

Book Chapter

School

School of Science

RAS ID

30671

Copyright

subscription content

Publisher

Springer

Comments

Brooks, D. J., & Coole, M. (2019). Intrusion detection systems. In L. Shapiro, & M. H. Maras (Eds.), Encyclopedia of security and emergency management (pp. 345-351). Cham, Switzerland: Springer. Available here

Share

 
COinS
 

Link to publisher version (DOI)

10.1007/978-3-319-69891-5_161-1