Direkt zum Inhalt

Menges, Florian ; Böhm, Fabian ; Vielberth, Manfred ; Puchta, Alexander ; Taubmann, Benjamin ; Rakotondravony, Noëlle ; Latzo, Tobias

Introducing DINGfest: An architecture for next generation SIEM systems

Menges, Florian, Böhm, Fabian, Vielberth, Manfred, Puchta, Alexander, Taubmann, Benjamin, Rakotondravony, Noëlle und Latzo, Tobias (2018) Introducing DINGfest: An architecture for next generation SIEM systems. In: SICHERHEIT 2018, 25.4.2018-27.4.2018, Konstanz, DE.

Veröffentlichungsdatum dieses Volltextes: 03 Mai 2018 13:26
Konferenz- oder Workshop-Beitrag
DOI zum Zitieren dieses Dokuments: 10.5283/epub.37266


Zusammenfassung

Isolated and easily protectable IT systems have developed into fragile and complex structures over the past years. These systems host manifold, flexible and highly connected applications, mainly in virtual environments. To ensure protection of those infrastructures, Security Incident and Event Management (SIEM) systems have been deployed. Such systems, however, suffer from many shortcomings such ...

Isolated and easily protectable IT systems have developed into fragile and complex structures over the past years. These systems host manifold, flexible and highly connected applications, mainly in virtual environments. To ensure protection of those infrastructures, Security Incident and Event Management (SIEM) systems have been deployed. Such systems, however, suffer from many shortcomings such as lack of mechanisms for forensic readiness. In this extended abstract, we identify these shortcomings and propose an architecture which addresses them. It is developed within the DINGfest project, on which we report and for which we seek initial feedback from the community.



["render_heading_insitutions" not defined]


Details

DokumentenartKonferenz- oder Workshop-Beitrag (Paper)
Verlag:Gesellschaft für Informatik e.V.
Ort der Veröffentlichung:Bonn
Seitenbereich:S. 257-260
Datum27 April 2018
InstitutionenWirtschaftswissenschaften > Institut für Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Informatik und Data Science > Fachbereich Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Identifikationsnummer
WertTyp
10.18420/sicherheit2018_21DOI
Stichwörter / KeywordsForensics, Virtual Machine Introspection, Visual Analytics, Security Information and Event Management, Identity and Access Management
Dewey-Dezimal-Klassifikation000 Informatik, Informationswissenschaft, allgemeine Werke > 004 Informatik
StatusVeröffentlicht
BegutachtetJa, diese Version wurde begutachtet
An der Universität Regensburg entstandenZum Teil
URN der UB Regensburgurn:nbn:de:bvb:355-epub-372660
Dokumenten-ID37266

Bibliographische Daten exportieren

Nur für Besitzer und Autoren: Kontrollseite des Eintrags

nach oben