Thursday, January 7, 2010

IDS measurements which can be used to assess performance accuracy

source - TESTING INTRUSION
DETECTION SYSTEMS
Elizabeth B. Lennon, Editor
Information Technology Laboratory
National Institute of Standards and Technology

1. Coverage
2. Probability of False Alarms
3. Probability of Detection
4. Resistance to attacks directed at the IDS
5. Ability to Handle High Bandwidth Traffic
6. Ability to Correlate Events
7. Ability to Detect Never-Before-Seen Attacks
8. Ability to Identify an Attack
9. Ability to Determine Attack Success
10. Capacity Verification for NIDS

No comments:

Post a Comment