SETTING OPTIMAL INTRUSION-DETECTION THRESHOLDS

Authors
Citation
Bc. Soh et Ts. Dillon, SETTING OPTIMAL INTRUSION-DETECTION THRESHOLDS, Computers & security, 14(7), 1995, pp. 621-631
Citations number
15
Categorie Soggetti
Computer Science Information Systems
Journal title
ISSN journal
01674048
Volume
14
Issue
7
Year of publication
1995
Pages
621 - 631
Database
ISI
SICI code
0167-4048(1995)14:7<621:SOIT>2.0.ZU;2-F
Abstract
In this paper a model is developed to study an intrusion detection pro cess. From the model, a measure called the Secure Computation Index is proposed. This index is used to quantify the total aspect of an intru sion-safe (or intrusion-resistant) system. Comparative studies based o n the index can assist in making decisions on optimal strategic contro ls against any possible system intrusion. In this paper, we show how t he model can be used to help in setting optimal intrusion-detection th resholds, which will provide the best intrusion coverage with the mini mum false positive rate.