{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2023,1,7]],"date-time":"2023-01-07T16:17:09Z","timestamp":1673108229206},"reference-count":11,"publisher":"Association for Computing Machinery (ACM)","issue":"3","content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["SIGOPS Oper. Syst. Rev."],"published-print":{"date-parts":[[2005,7]]},"abstract":"<jats:p>Two of the most used tools in the area of computer security are the firewalls and the Intrusion Detection Systems. Both of them fulfill the task for which they were designed for but unfortunately their response to an attack can be limited. The communication of both tools increases the response capacity of the system, but we need a protocol to communicate them. In this paper we present how is to communicate two security tools: snort and Iptables. The communication is based on the Intrusion Detection Message Exchange Format (IDMEF) proposed by the Intrusion Detection Working Group (IDWG).<\/jats:p>","DOI":"10.1145\/1075395.1075398","type":"journal-article","created":{"date-parts":[[2005,11,7]],"date-time":"2005-11-07T19:28:32Z","timestamp":1131391712000},"page":"34-43","update-policy":"http:\/\/dx.doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":1,"title":["An example of communication between security tools"],"prefix":"10.1145","volume":"39","author":[{"given":"Jorge Herrer\u00edas","family":"Guerrero","sequence":"first","affiliation":[{"name":"ITESM-CEM"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Roberto G\u00f3mez","family":"C\u00e1rdenas","sequence":"additional","affiliation":[{"name":"ITESM-CEM"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2005,7]]},"reference":[{"key":"e_1_2_1_1_1","volume-title":"Snort 2.0 Intrusion Detection","author":"Beale Jay","year":"2003","unstructured":"Beale , Jay , et al. Snort 2.0 Intrusion Detection . Syngress Publishing , 2003 . Beale, Jay, et al. Snort 2.0 Intrusion Detection. Syngress Publishing, 2003."},{"key":"e_1_2_1_2_1","unstructured":"Russell P. Rusty. Netfilter\/iptables. November 2003. &lt;http:\/\/www.netfilter.org&gt;  Russell P. Rusty. Netfilter\/iptables. November 2003. &lt;http:\/\/www.netfilter.org&gt;"},{"key":"e_1_2_1_3_1","volume-title":"Brian y Marty Roesch. Snort: The Open Source Network Intrusion Detection System","author":"Caswell","year":"2003","unstructured":"Caswell , Brian y Marty Roesch. Snort: The Open Source Network Intrusion Detection System . November 2003 . &lt;http:\/\/www.snort.org&gt; Caswell, Brian y Marty Roesch. Snort: The Open Source Network Intrusion Detection System. November 2003. &lt;http:\/\/www.snort.org&gt;"},{"key":"e_1_2_1_4_1","volume-title":"David y Herv\u00e9 Debar. Intrusion Detection Message Exchange Format Data Model and Extensible Markup Language (XML) Document Type Definition","author":"Curry","year":"2003","unstructured":"Curry , David y Herv\u00e9 Debar. Intrusion Detection Message Exchange Format Data Model and Extensible Markup Language (XML) Document Type Definition . January 2003 . &lt;http:\/\/www.ietf.org\/internet-drafts\/draft-ietf-idwg-idmef-xml-10.txt&gt; Curry, David y Herv\u00e9 Debar. Intrusion Detection Message Exchange Format Data Model and Extensible Markup Language (XML) Document Type Definition. January 2003. &lt;http:\/\/www.ietf.org\/internet-drafts\/draft-ietf-idwg-idmef-xml-10.txt&gt;"},{"key":"e_1_2_1_5_1","volume-title":"IDMEF XML plug in for the Snort IDS","author":"McAlerney Joe","year":"2003","unstructured":"McAlerney , Joe . IDMEF XML plug in for the Snort IDS . January 2003 &lt;http:\/\/www.silicondefense.com\/idwg\/snort-idmef\/&gt; McAlerney, Joe. IDMEF XML plug in for the Snort IDS. January 2003 &lt;http:\/\/www.silicondefense.com\/idwg\/snort-idmef\/&gt;"},{"key":"e_1_2_1_6_1","volume-title":"Joe y Adam Migus. Libidmef: C library implementation of the IDMEF XML draft","author":"McAlerney","year":"2002","unstructured":"McAlerney , Joe y Adam Migus. Libidmef: C library implementation of the IDMEF XML draft . June 2002 &lt;http:\/\/www.silicondefense.com\/idwg\/libidmef\/index.htm&gt; McAlerney, Joe y Adam Migus. Libidmef: C library implementation of the IDMEF XML draft. June 2002 &lt;http:\/\/www.silicondefense.com\/idwg\/libidmef\/index.htm&gt;"},{"key":"e_1_2_1_7_1","volume-title":"Linux iptables HOWTO","author":"Russell P. Rusty.","year":"1999","unstructured":"Russell , P. Rusty. Linux iptables HOWTO . September 1999 . Russell, P. Rusty. Linux iptables HOWTO. September 1999."},{"key":"e_1_2_1_8_1","unstructured":"Andreasson Oskar. Iptables Tutorial. April 2003.  Andreasson Oskar. Iptables Tutorial. April 2003."},{"key":"e_1_2_1_9_1","unstructured":"Roesch Martin y Chris Green. Snort Users Manual. 2003 &lt;http:\/\/www.snort.org\/docs\/writing_rules\/&gt;  Roesch Martin y Chris Green. Snort Users Manual. 2003 &lt;http:\/\/www.snort.org\/docs\/writing_rules\/&gt;"},{"key":"e_1_2_1_10_1","volume-title":"Rebecca y Peter Mell. \"Intrusion Detection Systems\". NIST Special Publication. SP800-31","author":"Bace","year":"2001","unstructured":"Bace , Rebecca y Peter Mell. \"Intrusion Detection Systems\". NIST Special Publication. SP800-31 November 2001 &lt;http:\/\/csrc.nist.gov\/publications\/nistpubs\/800-31\/sp800-31.pdf&gt; Bace, Rebecca y Peter Mell. \"Intrusion Detection Systems\". NIST Special Publication. SP800-31 November 2001 &lt;http:\/\/csrc.nist.gov\/publications\/nistpubs\/800-31\/sp800-31.pdf&gt;"},{"key":"e_1_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.5555\/645484.656235"}],"container-title":["ACM SIGOPS Operating Systems Review"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1075395.1075398","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,12,28]],"date-time":"2022-12-28T16:15:29Z","timestamp":1672244129000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1075395.1075398"}},"subtitle":["iptables - snort"],"short-title":[],"issued":{"date-parts":[[2005,7]]},"references-count":11,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2005,7]]}},"alternative-id":["10.1145\/1075395.1075398"],"URL":"https:\/\/doi.org\/10.1145\/1075395.1075398","relation":{},"ISSN":["0163-5980"],"issn-type":[{"value":"0163-5980","type":"print"}],"subject":[],"published":{"date-parts":[[2005,7]]},"assertion":[{"value":"2005-07-01","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}