loading...
Automatic Evaluation of Intrusion Detection Systems
Miami Beach, Florida, USA December 11-December 15
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/ACSAC.2006.1522nd Annual Computer Security Applica ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Frederic Massicotte, Canada Communication Research Center, Canada
Francois Gagnon, Carleton University, Canada
Yvan Labiche, Carleton University, Canada
Lionel Briand, Carleton University, Canada
Mathieu Couture, Carleton University, Canada
An Intrusion Detection System (IDS) is a crucial element of a network security posture. Although there are many IDS products available, it is rather difficult to find information about their accuracy. Only a few organizations evaluate these products. Furthermore, the data used to test and evaluate these IDS is usually proprietary. Thus, the research community cannot easily evaluate the next generation of IDS. Toward this end, DARPA provided in 1998, 1999 and 2000 an Intrusion Detection Evaluation Data Set. However, no new data set has been released by DARPA since 2000, in part because of the cumbersomeness of the task. In this paper, we propose a strategy to address certain aspects of generating a publicly available documented data set for testing and evaluating intrusion detection systems. We also present a tool that automatically analyzes and evaluates IDS using our proposed data set.
Citation:
Frederic Massicotte, Francois Gagnon, Yvan Labiche, Lionel Briand, Mathieu Couture, "Automatic Evaluation of Intrusion Detection Systems," acsac, pp.361-370, 22nd Annual Computer Security Applications Conference (ACSAC'06), 2006
Usage of this product signifies your acceptance of the Terms of Use.