Indiana University

Follow us on Facebook!

Towards a Third Generation Data Capture Architecture for Honeynets

TitleTowards a Third Generation Data Capture Architecture for Honeynets
Publication TypeConference Proceedings
Year of Publication2005
AuthorsBalas, E., and C. Viecco
Conference NameIEEE Information Assurance Workshop
Series TitleProceedings from the Sixth Annual IEEE SMC Information Assurance Workshop, 2005. IAW '05.
Pagination21-28
Date Published06/2005
PublisherIEEE
Conference LocationWest Point, New York
Publication Languageeng
ISBN0-7803-9290-6
Keywordsanml
AbstractHoneynets have become an important tool for researchers and network operators. However, their effectiveness has been impeded by a lack of a standard unified honeynet data model which results from having multiple unrelated data sources, each with its own access method and format. In this paper we propose a new data collection architecture that addresses the need for both rapid comprehension and detailed analysis by providing two data access methods: a relational model based fast path, and a canonical slow path. We also present a set of tools based on this architecture.