Next: Host data
Up: Intrusion Detection 101
Previous: Overview
IDS can be classified according to their
- data source (E-boxes)
- network, host audit trail
- analysis technique (A-boxes)
- misuse, anomaly detection
- overall architecture
- distributed, autonomous agents
Dug Song
1999-09-17