A survey of IT early warning systems: architectures, challenges, and solutions

被引:16
|
作者
Ramaki, Ali Ahmadian [1 ]
Atani, Reza Ebrahimi [1 ]
机构
[1] Univ Guilan, Dept Comp Engn, Rasht, Iran
关键词
intrusion detection; intrusion prevention; early warning system; alert correlation; network security; MODEL;
D O I
10.1002/sec.1647
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the advent of new technologies and various services provided in the context of computer networks, a large volume of data is being generated. The main challenge in this area is providing network protection services against various threats and vulnerabilities. So far, many techniques have been proposed to deal with these threats. All of these techniques pursue the same goal, preventing attackers from reaching their objectives. A solution based on early warning system(s) (EWSs) is what exactly security teams need to manage the threats properly. EWS, as a complement to Intrusion Detection System, is a proactive approach against security threats. This is carried out through the early detection of potential behavior of a system, evaluating the scope of malicious behavior, and finally, using suitable response against any kind of detectable security event. This paper presents a comprehensive review on EWSs including definitions, applications, architectures, alert correlation aspects, and other technical requirements. Furthermore, previous studies and existing EWSs have been described and analyzed here. A classification of EWSs has been presented: commercial systems and systems under research and development. Finally, from the studies about EWSs, we conclude some challenges and research issues are still remain open. Copyright (C) 2016 John Wiley & Sons, Ltd.
引用
收藏
页码:4751 / 4776
页数:26
相关论文
共 50 条
  • [21] India's Earthquake Early Warning Systems: A Review of Developments and Challenges
    Mittal, Himanshu
    Pal, Shanker
    Kumar, Rajiv
    Saini, Atul
    Wu, Yih-Min
    Ammani, Ambikapathy
    Patel, R. C.
    Sandeep, O. P.
    Mishra, O. P.
    SURVEYS IN GEOPHYSICS, 2025,
  • [22] Living modeling of IT architectures: Challenges and solutions
    Trojer, Thomas
    Farwick, Matthias
    Häusler, Martin
    Breu, Ruth
    Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics), 2015, 8950 : 458 - 474
  • [23] A national survey of obstetric early warning systems in the United Kingdom: fiveyears on
    Isaacs, R. A.
    Wee, M. Y. K.
    Bick, D. E.
    Beake, S.
    Sheppard, Z. A.
    Thomas, S.
    Hundley, V.
    Smith, G. B.
    van Teijlingen, E.
    Thomas, P. W.
    ANAESTHESIA, 2014, 69 (07) : 687 - 692
  • [24] EARLY WARNING SYSTEMS
    PREWITT, K
    SOCIETY, 1981, 18 (06) : 3 - 6
  • [25] EARLY WARNING SYSTEMS
    MATZA, D
    HARVARD EDUCATIONAL REVIEW, 1966, 36 (03) : 323 - 326
  • [26] EARLY WARNING SYSTEMS
    RIESER, I
    UNTERNEHMUNG-SCHWEIZERISCHE ZEITSCHRIFT FUR BETRIEBSWIRTSCHAFT, 1978, 32 (01): : 51 - 68
  • [27] EARLY WARNING SYSTEMS
    BUTRICO, FA
    JOURNAL OF OCCUPATIONAL MEDICINE, 1968, 10 (05): : 259 - 260
  • [28] Recent Advances in Internet of Things Solutions for Early Warning Systems: A Review
    Esposito, Marco
    Palma, Lorenzo
    Belli, Alberto
    Sabbatini, Luisiana
    Pierleoni, Paola
    SENSORS, 2022, 22 (06)
  • [29] The role of communication systems in smart grids: Architectures, technical solutions and research challenges
    Ancillotti, Emilio
    Bruno, Raffaele
    Conti, Marco
    COMPUTER COMMUNICATIONS, 2013, 36 (17-18) : 1665 - 1697
  • [30] Applying time-triggered architectures in reliable embedded systems: challenges and solutions
    Pont, M. J.
    ELEKTROTECHNIK UND INFORMATIONSTECHNIK, 2008, 125 (11): : 401 - 405