19.01.2014 Views

High-Performance Intrusion Detection with the Open-Source Bro NIDS

High-Performance Intrusion Detection with the Open-Source Bro NIDS

High-Performance Intrusion Detection with the Open-Source Bro NIDS

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Dynamic Protocol <strong>Detection</strong><br />

Web<br />

Client<br />

Request for /index.html<br />

Web<br />

Server<br />

1.2.3.4/4321 5.6.7.8/80<br />

Port 80?<br />

Method Path Version Header<br />

HTTP<br />

GET /index.html HTTP/1.1\nServer: ...<br />

http_request<br />

Guest Lecture, RWTH Aachen<br />

20<br />

Thursday, December 16, 2010

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!