Experimenting with a Policy-Based HIDS Based on an Information Flow Control Model

  • Authors:
  • Jacob Zimmerman;Ludovic Mé;Christophe Bidan

  • Affiliations:
  • -;-;-

  • Venue:
  • ACSAC '03 Proceedings of the 19th Annual Computer Security Applications Conference
  • Year:
  • 2003

Quantified Score

Hi-index 0.00

Visualization

Abstract

In [1], we proposed a model for policy-based intrusiondetection, based on information flow control.Inthe present paper, we show its applicability and effectivenesson a standard OS.We present results of twoset of experiments, one carried out in a completely controlledenvironment, the other on an operational serverwith real network traffic.Our results results show thatthe model fulfills its goals and serves as a successfulruntime policy-based intrusion detector.