Re: Bayesian IDS...help



Hi.

Spamassasin uses bayasian for anomaly detection in mail. Perhaps you
can find there some useful things.

2008/1/31, Dinakara <om_dinu@xxxxxxxxxxxxxx>:

Hi there,

I am working on Anomaly based Network IDS...
Statistical based technique is simple but not quite effective in real
scenario...
I understand Bayesian classifier/Network is more effective in the
context of anomaly detection,
but i have very little idea about Bayesian approach for IDS...
Can someone please help me out, i want to know how to go about it and
if there are any open source
anomaly based tool available (bayesian IDS) ...

Thanks in advance..


--
View this message in context: http://www.nabble.com/Bayesian-IDS...help-tp15197689p15197689.html
Sent from the IDS (Intrusion Detection System) mailing list archive at Nabble.com.


------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it
with real-world attacks from CORE IMPACT.
Go to http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=intro_sfw
to learn more.
------------------------------------------------------------------------




--
Best regards.
Gleb Pakharenko.
http://gpaharenko.livejournal.com

------------------------------------------------------------------------
Test Your IDS

Is your IDS deployed correctly?
Find out quickly and easily by testing it
with real-world attacks from CORE IMPACT.
Go to http://www.coresecurity.com/index.php5?module=Form&action=impact&campaign=intro_sfw
to learn more.
------------------------------------------------------------------------



Relevant Pages

  • Protocol Anomaly Detection IDS
    ... I am trying to supplement our existing signature based IDS (Snort, ... enterprise network. ... I hear the anomaly detection buzzword thrown around a lot these days, ... NFR Network Intrusion Detection System ...
    (Focus-IDS)
  • Re: Specification-based Anomaly Detection
    ... discovered by anomaly detection systems of any stripe. ... Replacing signature IDS is not one of those things. ... Thomas H. Ptacek // Product Manager, Arbor Networks ... Find out quickly and easily by testing it with real-world attacks from ...
    (Focus-IDS)
  • Re: Bayesian IDS...help
    ... It builds a bayesian network of 4 nodes dinamically, considering the entropy of edges, using historical data. ... I wouldn't forget the Snort IDS, ... Spamassasin uses bayasian for anomaly detection in mail. ...
    (Focus-IDS)
  • Re: Bayesian IDS...help
    ... It builds a bayesian network of 4 nodes dinamically, considering the entropy of edges, using historical data. ... I wouldn't forget the Snort IDS, ... Spamassasin uses bayasian for anomaly detection in mail. ...
    (Focus-IDS)
  • RE: Current state of Anomaly-based Intrusion Detection
    ... > traffic is, in essence, an anomaly detection system. ... "learned" by the IDS itself. ... things that the admin didn't expect. ... The "unknown" part is detected by most ...
    (Focus-IDS)

Quantcast