Skip to content

irondetect is a correlation engine. Based on contexts, signatures and anomalies, it detects deviations from normal behavior. It presents correlations between IF-MAP metadata of different devices. By the definition of rules in a policy by a security expert, the correlated results can be used to analyze a network. If you need help for setting up, …

License

Notifications You must be signed in to change notification settings

trustathsh/irondetect

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

86 Commits
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 

Repository files navigation

irondetect

This package contains the irondetect correlation engine. Based on contexts, signatures and anomalies, it detects deviations from normal behavior. It presents correlations between IF-MAP metadata of different devices. By the definition of rules in a policy by a security expert, the correlated results can be used to analyze a network.

If you need help for setting up, please contact the Trust@HsH team.

Development was done by Hochschule Hannover (Hannover University of Applied Sciences and Arts) within the ESUKOM research project.

Documentation

To be submitted later...

Build

Just execute

mvn package

in order to create a runnable jar file, a source jar file and this project archive.

Feedback

If you have any questions, problems or comments, please contact

LICENSE

Licensed under the Apache License, Version 2.0. You may not use this file except in compliance with the License.

About

irondetect is a correlation engine. Based on contexts, signatures and anomalies, it detects deviations from normal behavior. It presents correlations between IF-MAP metadata of different devices. By the definition of rules in a policy by a security expert, the correlated results can be used to analyze a network. If you need help for setting up, …

Resources

License

Stars

Watchers

Forks

Packages

No packages published

Languages