Common Inirusion Detection Framework (CIDF) is an important step towards enabling different intrusion and response (IDR) components to interoperate with each other.
公共入侵监测系统架构(CIDF)便是迈向使不同的入侵监测与响应(idr)组件完成互操作的重要一步。
2
This framework is based on CIDF, and uses Data Mining to mine intrusion models, then automatically transforms it into intrusion detection rules for rule base's updating.
This paper proves that the model is feasible for intrusion detection and describes the IDS that USES this model to describe net-attacks by CIDF (Common intrusion detection Framework).