000 04455nam a22005295i 4500
001 978-0-387-68254-9
003 DE-He213
005 20250710084006.0
007 cr nn 008mamaa
008 100301s2007 xxu| s |||| 0|eng d
020 _a9780387682549
_a99780387682549
024 7 _a10.1007/978-0-387-68254-9
_2doi
082 0 4 _a005.8
_223
100 1 _aFlegel, Ulrich.
_eauthor.
245 1 0 _aPrivacy-Respecting Intrusion Detection
_h[recurso electrónico] /
_cby Ulrich Flegel.
264 1 _aBoston, MA :
_bSpringer US,
_c2007.
300 _bonline resource.
336 _atext
_btxt
_2rdacontent
337 _acomputer
_bc
_2rdamedia
338 _arecurso en línea
_bcr
_2rdacarrier
347 _atext file
_bPDF
_2rda
490 1 _aAdvances in Information Security,
_x1568-2633 ;
_v35
505 0 _aand Background -- Authorizations -- An Architectural Model for Secure Authorizations -- Traditional Security Objectives -- Personal Data Protection Objectives -- The Challenge: Technical Enforcement of Multilateral Security -- Pseudonyms - A Technical Point of View -- An Architectural Model for Pseudonymous and Secure Authorizations -- Comparing Architectures -- Audit Data Pseudonymization -- Set-based Approach -- Requirements, Assumptions and Trust Model -- Modeling Conditions for Technical Purpose Binding of Controlled Pseudonym Disclosure -- Cryptographic Enforcement of Disclosure Conditions -- The Mismatch Problem -- Operational Pseudonymization and Pseudonym Disclosure -- Extensions -- Application to Unix Audit Data -- Unix Audit Data -- Syslog -- Instantiating the Set-based Approach for Syslog-style Audit Data -- Implementation: Pseudo/CoRe -- Evaluation -- APES: Anonymity and Privacy in Electronic Services -- Evaluating the Design Using Basic Building Blocks for Anonymity -- Evaluating the Performance of the Implementation -- Refinement of Misuse Scenario Models -- Motivating Model Refinements -- Models of Misuse Scenarios -- Pseudonymization Based on Serial Signature-Nets -- Pseudonym Linkability -- Pseudonym Disclosure.
520 _aWith our society's growing dependency on information technology systems (IT), IT security is crucial. To properly respond to misuse or abusive activity in IT systems, one needs to establish the capability to detect and understand improper activity. Intrusion Detection Systems observe activity occurring in the IT system, record these observations in audit data, and analyze collected audit data to detect misuse. Collecting and processing audit data for misuse detection conflicts with expectations and rights of system users regarding their privacy. A viable solution is replacing personal data with pseudonyms in audit data. Privacy-Respecting Intrusion Detection introduces technical purpose binding, restricting the linkability of pseudonyms in audit data, to the amount required for misuse detection. Also, it limits the recovery of original personal data to pseudonyms involved in a detected misuse scenario. This book includes case studies with constructively validated solutions by providing algorithms. Privacy-Respecting Intrusion Detection is designed for a professional audience, composed of practitioners and researchers in industry. This book is also suitable as an advance-level text in the computer science field. Foreword by Richard Kemmerer, University of California, Santa Barbara, USA
650 0 _aCOMPUTER SCIENCE.
650 0 _aCOMPUTER NETWORK ARCHITECTURES.
650 0 _aCOMPUTER COMMUNICATION NETWORKS.
650 0 _aDATA PROTECTION.
650 0 _aDATA STRUCTURES (COMPUTER SCIENCE).
650 0 _aDATA ENCRYPTION (COMPUTER SCIENCE).
650 0 _aINFORMATION SYSTEMS.
650 1 4 _aCOMPUTER SCIENCE.
650 2 4 _aSYSTEMS AND DATA SECURITY.
650 2 4 _aCOMPUTER COMMUNICATION NETWORKS.
650 2 4 _aDATA ENCRYPTION.
650 2 4 _aINFORMATION SYSTEMS APPLICATIONS (INCL.INTERNET).
650 2 4 _aDATA STRUCTURES, CRYPTOLOGY AND INFORMATION THEORY.
650 2 4 _aCOMPUTER SYSTEMS ORGANIZATION AND COMMUNICATION NETWORKS.
710 2 _aSpringerLink (Online service)
773 0 _tSpringer eBooks
776 0 8 _iPrinted edition:
_z9780387343464
830 0 _aAdvances in Information Security,
_x1568-2633 ;
_v35
856 4 0 _uhttp://dx.doi.org/10.1007/978-0-387-68254-9
_zVer el texto completo en las instalaciones del CICY
912 _aZDB-2-SCS
942 _2ddc
_cER
999 _c57942
_d57942