{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,30]],"date-time":"2025-10-30T19:49:26Z","timestamp":1761853766529,"version":"build-2065373602"},"publisher-location":"Cham","reference-count":22,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030000080"},{"type":"electronic","value":"9783030000097"}],"license":[{"start":{"date-parts":[[2018,1,1]],"date-time":"2018-01-01T00:00:00Z","timestamp":1514764800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2018]]},"DOI":"10.1007\/978-3-030-00009-7_28","type":"book-chapter","created":{"date-parts":[[2018,9,20]],"date-time":"2018-09-20T21:20:42Z","timestamp":1537478442000},"page":"300-308","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["The Research on Security Audit for Information System Classified Protection"],"prefix":"10.1007","author":[{"given":"Hui","family":"Lu","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiang","family":"Cui","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Le","family":"Wang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yu","family":"Jiang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Meng","family":"Cui","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2018,9,21]]},"reference":[{"key":"28_CR1","unstructured":"Habra, N., Le Charlier, B., Mounji, A., Mathieu, I.: Preliminary Report on Advanced Security Audit Trail Analysis on Unix (ASAX also called SAT-X)"},{"key":"28_CR2","unstructured":"CCITT Recommendation X.740 Information Technology \u2013 Open System Interconnection - System Management: Security Audit Trail Function"},{"key":"28_CR3","unstructured":"Lee, W., Stolfo, S.J.: Data Mining Approaches for Intrusion Detection. Computer Science Department, Columbia University (1998)"},{"key":"28_CR4","unstructured":"Safford, D.R., Schales, D.L., Hess, D.K.: The TAMU Security Package: An Ongoing Response to Internet Intruders in an Academic Environment. Supercomputer Center, Texas A&M University (1993)"},{"key":"28_CR5","unstructured":"Vigna, G.: Inspect: A Lightweight Distributed Approach to Automated Audit Trail Analysis"},{"key":"28_CR6","unstructured":"Bishop, M., Wee, C., Frank, J.: Goal Oriented Auditing and Logging. Department of Computer Science, University of California at Davis (1996)"},{"key":"28_CR7","unstructured":"U.S. National Computer Security Center. A Guide to Understanding Audit in Trusted System (l988)"},{"key":"28_CR8","volume-title":"Computer Audit","author":"RR Moeller","year":"1989","unstructured":"Moeller, R.R.: Computer Audit. Control and Security. Wiley, New York (1989)"},{"key":"28_CR9","unstructured":"U.S. National Computer Security Center Trusted Network Interpretation of the Trusted Computer System Evaluation Criteria"},{"issue":"1","key":"28_CR10","doi-asserted-by":"crossref","first-page":"46","DOI":"10.1109\/MSECP.2003.1176995","volume":"1","author":"J Haines","year":"2003","unstructured":"Haines, J.: Ryder, DK: Validation of sensor alert correlators. IEEE Secur. Priv. 1(1), 46\u201356 (2003)","journal-title":"IEEE Secur. Priv."},{"key":"28_CR11","doi-asserted-by":"crossref","unstructured":"Kliger, S., Yemini, S.: A coding approach to event correlation. In: Proceedings of 4th International Symposium on Integrated Network Management (IFIP\/IEEE), Santa Barbara, CA (1995)","DOI":"10.1007\/978-0-387-34890-2_24"},{"key":"28_CR12","unstructured":"Gruschke, B.: Integrated Event Management Event Correlation Using Dependency Graphs (1998)"},{"key":"28_CR13","unstructured":"Hasan, M., Sugla, B., Viswanathan, R.: A conceptual framework for network management event correlation and filtering systems. In: Proceedings of the Sixth IFIP\/IEEE International Symposium on Integrated Management (1999)"},{"key":"28_CR14","doi-asserted-by":"crossref","unstructured":"Liu, G., Mok, A.K., Yang, E.J.: Composite events for network event correlation. In: Proceedings of the Sixth IFIP\/IEEE International Symposium on Integrated Network Management, Distributed Management for the Networked Millennium, pp. 247\u2013260. IEEE (1999)","DOI":"10.1109\/INM.1999.770687"},{"key":"28_CR15","unstructured":"Ohsie, D., Mayer, A., Kliger, S.: Event modeling with the MODEL language: a tutorial introduction (2004)"},{"key":"28_CR16","doi-asserted-by":"crossref","unstructured":"Cuppens, F., Miege, A.: Alert correlation in a cooperative intrusion detection framework. In: Proceedings of 2002 IEEE Symposium on Security and privacy, pp. 202\u2013215. IEEE (2002)","DOI":"10.1109\/SECPRI.2002.1004372"},{"key":"28_CR17","unstructured":"Gula, R.: Correlating IDS alerts with vulnerability information (2004)"},{"key":"28_CR18","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"85","DOI":"10.1007\/3-540-45474-8_6","volume-title":"Recent Advances in Intrusion Detection","author":"H Debar","year":"2001","unstructured":"Debar, H., Wespi, A.: Aggregation and correlation of intrusion-detection alerts. In: Lee, W., M\u00e9, L., Wespi, A. (eds.) RAID 2001. LNCS, vol. 2212, pp. 85\u2013103. Springer, Heidelberg (2001). https:\/\/doi.org\/10.1007\/3-540-45474-8_6"},{"issue":"4","key":"28_CR19","doi-asserted-by":"crossref","first-page":"227","DOI":"10.1145\/382912.382914","volume":"3","author":"W Lee","year":"2000","unstructured":"Lee, W., Stolfo, S.J.: A framework for constructing features and models for intrusion detection systems. ACM Trans. Inf. Syst. Secur. 3(4), 227\u2013261 (2000)","journal-title":"ACM Trans. Inf. Syst. Secur."},{"issue":"4","key":"28_CR20","doi-asserted-by":"crossref","first-page":"5","DOI":"10.1145\/604264.604267","volume":"30","author":"SJ Stolfo","year":"2001","unstructured":"Stolfo, S.J., Lee, W.: Data mining-based intrusion detectors: an overview of the Columbia IDS project. SIGMOD Rec. 30(4), 5\u201314 (2001)","journal-title":"SIGMOD Rec."},{"key":"28_CR21","doi-asserted-by":"crossref","unstructured":"Lee, W., Stolfo, S.J.: Real time data mining-based intrusion detection. In: Proceedings of DISCEX II (2001)","DOI":"10.21236\/ADA401496"},{"key":"28_CR22","unstructured":"Locasto, M.E., Parekh, J.J., Stolfo, S., Keromytis, A.D., Malkin, T.G., Misra, V.: Collaborative distributed intrusion detection (2004)"}],"container-title":["Lecture Notes in Computer Science","Cloud Computing and Security"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-00009-7_28","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,7,8]],"date-time":"2025-07-08T10:42:00Z","timestamp":1751971320000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-00009-7_28"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018]]},"ISBN":["9783030000080","9783030000097"],"references-count":22,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-00009-7_28","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2018]]},"assertion":[{"value":"ICCCS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Cloud Computing and Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Haikou","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2018","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"8 June 2018","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"10 June 2018","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"4","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"incodldos2018","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"http:\/\/www.icccsconf.org\/icccs2018.html","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}