Author(s):
Salgueiro, Pedro ; Abreu, Salvador
Date: 2022
Persistent ID: http://hdl.handle.net/10174/32367
Origin: Repositório Científico da Universidade de Évora
Subject(s): Constraint Programming; Intrusion Detection Systems; Domain Specific Languages
Description
In this work we present NeMODe a declarative system for Computer Network Intrusion detection providing a declarative Domain Specific Language for describing computer network intrusion signatures that can spread across several network packets, which allows to state constraints over network packets, describing relations between several packets. NeMODe provides several back-end detection mechanisms relying on Constraint Programming (CP) methodologies to find those intrusions.