GI LogoGI Logo
  • Anmelden
Digitale Bibliothek
    • Gesamter Bestand

      • Bereiche & Sammlungen
      • Titel
      • Autor
      • Erscheinungsdatum
      • Schlagwort
    • Diese Sammlung

      • Titel
      • Autor
      • Erscheinungsdatum
      • Schlagwort
Digital Bibliothek der Gesellschaft für Informatik e.V.
GI-DL
    • English
    • Deutsch
  • Deutsch 
    • English
    • Deutsch
Dokumentanzeige 
  •   Startseite
  • Lecture Notes in Informatics
  • Proceedings
  • Sicherheit
  • P170 - Sicherheit 2010 - Sicherheit, Schutz und Zuverlässigkeit
  • Dokumentanzeige
JavaScript is disabled for your browser. Some features of this site may not work without it.
  •   Startseite
  • Lecture Notes in Informatics
  • Proceedings
  • Sicherheit
  • P170 - Sicherheit 2010 - Sicherheit, Schutz und Zuverlässigkeit
  • Dokumentanzeige

A transparent Bridge for forensic sound network traffic data acquisition

Autor(en):
Kiltz, Stefan [DBLP] ;
Hildebrandt, Mario [DBLP] ;
Altschaffel, Robert [DBLP] ;
Dittmann, Jana [DBLP]
Zusammenfassung
In this paper we introduce a prototype that is designed to produce forensic sound network data recordings using inexpensive hardand software, the Linux Forensic Transparent Bridge (LFTB). It supports the investigation of the network communication parameters and the investigation of the payload of network data. The basis for the LFTB is a self-developed model of the forensic process which also addresses forensically relevant data types and considerations for the design of forensic software using software engineering techniques. LFTB gathers forensic evidence to support cases such as malfunctioning hardand software and for investigating malicious activity. In the latter application the stealthy design of the proposed device is beneficial. Experiments as part of a first evaluation show its usability in a support case and a malicious activity scenario. Effects to latency and throughput were tested and limitations for packet recording analysed. A live monitoring scheme warning about potential packet loss endangering evidence has been implemented.
  • Vollständige Referenz
  • BibTeX
Kiltz, S., Hildebrandt, M., Altschaffel, R. & Dittmann, J., (2010). A transparent Bridge for forensic sound network traffic data acquisition. In: Freiling, F. C. (Hrsg.), Sicherheit 2010. Sicherheit, Schutz und Zuverlässigkeit. Bonn: Gesellschaft für Informatik e.V.. (S. 93-104).
@inproceedings{mci/Kiltz2010,
author = {Kiltz, Stefan AND Hildebrandt, Mario AND Altschaffel, Robert AND Dittmann, Jana},
title = {A transparent Bridge for forensic sound network traffic data acquisition},
booktitle = {Sicherheit 2010. Sicherheit, Schutz und Zuverlässigkeit},
year = {2010},
editor = {Freiling, Felix C.} ,
pages = { 93-104 },
publisher = {Gesellschaft für Informatik e.V.},
address = {Bonn}
}
DateienGroesseFormatAnzeige
93.pdf166.5Kb PDF Öffnen

Haben Sie fehlerhafte Angaben entdeckt? Sagen Sie uns Bescheid: Feedback abschicken

Mehr Information

ISBN: 978-3-88579-264-2
ISSN: 1617-5468
Datum: 2010
Sprache: en (en)
Typ: Text/Conference Paper

Keywords

  • IT-forensics
  • network security
  • reactive security
  • intrusion detection
Sammlungen
  • P170 - Sicherheit 2010 - Sicherheit, Schutz und Zuverlässigkeit [31]

Zur Langanzeige


Über uns | FAQ | Hilfe | Impressum | Datenschutz

Gesellschaft für Informatik e.V. (GI), Kontakt: Geschäftsstelle der GI
Diese Digital Library basiert auf DSpace.

 

 


Über uns | FAQ | Hilfe | Impressum | Datenschutz

Gesellschaft für Informatik e.V. (GI), Kontakt: Geschäftsstelle der GI
Diese Digital Library basiert auf DSpace.