首页    期刊浏览 2024年11月06日 星期三
登录注册

文章基本信息

  • 标题:Events Classification in Log Audit
  • 本地全文:下载
  • 作者:Sabah Al-Fedaghi ; Fahad Mahdi
  • 期刊名称:International Journal of Network Security & Its Applications
  • 印刷版ISSN:0975-2307
  • 电子版ISSN:0974-9330
  • 出版年度:2010
  • 卷号:2
  • 期号:2
  • 出版社:Academy & Industry Research Collaboration Center (AIRCC)
  • 摘要:Information security audit is a monitoring/logging mechanism to ensure compliance with regulations and to detect abnormalities, security breaches, and privacy violations; however, auditing too many events causes overwhelming use of system resources and impacts performance. Consequently, a classification of events is used to prioritize events and configure the log system. Rules can be applied according to this classification to make decisions about events to be archived and types of actions invoked by events. Current classification methodologies are fixed to specific types of incident occurrences and applied in terms of system-dependent description. In this paper, we propose a conceptual model that produces an implementation-independent logging scheme to monitor events
  • 关键词:Information security; event classification; audit system; log analysis.
国家哲学社会科学文献中心版权所有