A Proposed Translation Data Model for Flow Format Interoperability
• White Paper
In this paper, Brian Trammell presents a proposed solution to the problem of mutual unintelligibility of raw flow and intermediate analysis data.
Publisher
Software Engineering Institute
Topic or Tag
Abstract
A significant technical barrier to the growth of the security-oriented network flow data analysis community is the mutual unintelligibility of raw flow and intermediate analysis data used by the proliferation of flow data analysis tools. As a solution to this problem, this paper presents a common event data model and a translator built around it to adapt each tool's native format to this common model.
Part of a Collection
FloCon 2005 Collection
This content was created for a conference series or symposium and does not necessarily reflect the positions and views of the Software Engineering Institute.