17th Annual Computer Security Applications Conference (ACSAC'01)
Implementing the Intrusion Detection Exchange Protocol
New Orleans, Lousiana
December 10-December 14
ISBN: 0-7695-1405-7
We describe the goals of the IETF?s Intrusion Detection Working Group (IDWG) and the requirements for a transport protocol to communicate among intrusion detection systems. We then describe the design and implementation of IAP, the first attempt at such a protocol. After a discussion of IAP?s limitations, we discuss BEEP, a new IETF general framework for application protocols. We then describe the Intrusion Detection Exchange Protocol (IDXP), a transport protocol designed and implemented within the BEEP framework that fulfills the IDWG requirements for its transport protocol. We conclude by discussing probable future directions for this ongoing effort.
Citation:
T. Buchheim, M. Erlinger, B. Feinstein, G. Matthews, R. Pollock, J. Betser, A. Walther, "Implementing the Intrusion Detection Exchange Protocol," acsac, pp.0032, 17th Annual Computer Security Applications Conference (ACSAC'01), 2001