There are many approaches to System Monitoring and Network Intrusions. In many cases these approaches are complementary, the strengths of one filling for the weakness in others. However as each system operates in isolation it becomes difficult to leverage the combined capabilities.
This presentation describes an approach that is based on the OMG Data Distribution Service standard to normalize and combine the information from multiple system monitoring probes and intrusion detection sensors, and further combine it with the power of off-the-shelf Complex Event Processing Engines (CEP) to develop a holistic, all-incluse approach to system monitoring and intrusion detection.
Clipping is a handy way to collect important slides you want to go back to later.