<?xml version="1.0" encoding="UTF-8"?><xml><records><record><source-app name="Biblio" version="6.x">Drupal-Biblio</source-app><ref-type>10</ref-type><contributors><authors><author><style face="normal" font="default" size="100%">E. Balas</style></author><author><style face="normal" font="default" size="100%">Viecco, Camilo</style></author></authors></contributors><titles><title><style face="normal" font="default" size="100%">Towards a Third Generation Data Capture Architecture for Honeynets</style></title><secondary-title><style face="normal" font="default" size="100%">IEEE Information Assurance Workshop</style></secondary-title><tertiary-title><style face="normal" font="default" size="100%">Proceedings from the Sixth Annual IEEE SMC Information Assurance Workshop, 2005. IAW '05. </style></tertiary-title></titles><keywords><keyword><style  face="normal" font="default" size="100%">anml</style></keyword></keywords><dates><year><style  face="normal" font="default" size="100%">2005</style></year><pub-dates><date><style  face="normal" font="default" size="100%">06/2005</style></date></pub-dates></dates><publisher><style face="normal" font="default" size="100%">IEEE</style></publisher><pub-location><style face="normal" font="default" size="100%">West Point, New York</style></pub-location><pages><style face="normal" font="default" size="100%">21-28</style></pages><language><style face="normal" font="default" size="100%">eng</style></language><abstract><style face="normal" font="default" size="100%">Honeynets have become an important tool for researchers and network operators. However, their effectiveness has been impeded by a lack of a standard unified honeynet data model which results from having multiple unrelated data sources, each with its own access method and format. In this paper we propose a new data collection architecture that addresses the need for both rapid comprehension and detailed analysis by providing two data access methods: a relational model based fast path, and a canonical slow path. We also present a set of tools based on this architecture.</style></abstract><label><style face="normal" font="default" size="100%">Advanced Network Management Lab</style></label></record></records></xml>