Network Intrusion Detection Signatures, Part 1
Details
Bookmark and Share

Submitted: 05/14/10
Views: 7 views, 0 incoming clicks. Averaging 0 views and 0 incoming clicks per day.
In the most recent 30 day period, there've been 0 views and 0 incoming clicks.
Rating: 0/5 based on 0 votes. The median rating is 0.

Network Intrusion Detection Signatures, Part 1

Description: This is the first in a series of articles on understanding and developing signatures for network intrusion detection systems. In this article we will discuss the basics of network IDS signatures and then take a closer look at signatures that focus on IP, TCP, UDP and ICMP header values. Such signatures ignore packet payloads and instead look for certain header field values or combinations of values. By learning about network IDS signatures, you'll have more knowledge of how intrusion detection systems operate, and you'll have a better foundation to write your own IDS signatures.
Read More

Discussion: 0 comments
Tags:

Sorry, you don't have permission to post. Log in, or register if you haven't yet.

Please login or register.


Members currently reading this thread:
Print Print Discussion Discussion (0) Report Report