Proceedings of the 5th ACM International Conference on Distributed Event-Based System 2011
DOI: 10.1145/2002259.2002261
|View full text |Cite
|
Sign up to set email alerts
|

A general extension system for event processing languages

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1

Citation Types

0
2
0

Year Published

2012
2012
2019
2019

Publication Types

Select...
2
1

Relationship

0
3

Authors

Journals

citations
Cited by 3 publications
(2 citation statements)
references
References 6 publications
0
2
0
Order By: Relevance
“…For instance in commercial SIEM solutions such as OSSEC (open source HIDS (Host-based Intrussion Detection Systems) SECurity) or OSSIM (open source security information management), an XML-based language is included for that task [ 25 ]. Other systems such as Prelude use Lua language [ 26 ], and in Esper, they use an event processing language (EPL) [ 27 ]. Nevertheless, In most SIEM systems, the languages are mainly focused on the construction of correlation rules which could aid in the detection of possible threats or intrusions, while the goal of our proposal is the definition of a language for the generation of security enforcement policies, related specifically with the access control through firewalls and other related network devices.…”
Section: Related Workmentioning
confidence: 99%
“…For instance in commercial SIEM solutions such as OSSEC (open source HIDS (Host-based Intrussion Detection Systems) SECurity) or OSSIM (open source security information management), an XML-based language is included for that task [ 25 ]. Other systems such as Prelude use Lua language [ 26 ], and in Esper, they use an event processing language (EPL) [ 27 ]. Nevertheless, In most SIEM systems, the languages are mainly focused on the construction of correlation rules which could aid in the detection of possible threats or intrusions, while the goal of our proposal is the definition of a language for the generation of security enforcement policies, related specifically with the access control through firewalls and other related network devices.…”
Section: Related Workmentioning
confidence: 99%
“…Event tools are also important to manage the runtime of an event-based system, so features like control of subscriptions, monitoring and administration of the event system infrastructure, statistics of the event flow, visibility and transport of the event generation are important functionality in order to support the lifecycle of an eventbased system. Some leading software vendors like IBM and Oracle [1] offers on their SOA-based products some sort of event development tooling to support implementation of eventdriven architecture. An event tool developed as part of this project is used to specify an use case based on a Serasa Experian real scenario.…”
Section: Event Toolingmentioning
confidence: 99%