Please Note:

The Open Access Repository has moved to a new authentication system as of the 1st of November.

Account holders will now be able to login using their University of Tasmania credentials.
If you have trouble logging in please email us on so we can assist you.

Public users can still access the records in this repository as normal

Open Access Repository

Intrusion Detection by Intelligent analysis of data across multiple gateways in real-time.


Downloads per month over past year

Scanlan, J and Lorimer, S and Hartnett, J and Manderson, K (2004) Intrusion Detection by Intelligent analysis of data across multiple gateways in real-time. In: Australian Telecommunication Networks, 8 - 10 December 2004, Bondi Beach.

This is the latest version of this item.

IntelligentAnal...pdf | Download (225kB)
Available under University of Tasmania Standard License.

| Preview


Current firewalls and intrusion detection systems are generally designed to protect a single gateway in order to provide protection for machines residing behind the gateway on an internal network. When considering a network
incorporating multiple gateways across a range of IP addresses exposed to the Internet, interesting data can be gathered with regard to the types of scans occurring across these gateways from the outside. The validity of using a central server to amalgamate, reduce and analyse the log files of each gateway is investigated in order to examine the activities of the scans across multiple gateways and port numbers. The results from this analysis can then be used to act against an attack through heuristic driven rule creation.

Item Type: Conference or Workshop Item (UNSPECIFIED)
Keywords: Intrusion Detection, Firewall, Multiple Gateway, Analysis
Page Range: pp. 417-420
Date Deposited: 22 Aug 2005
Last Modified: 18 Nov 2014 03:10
Item Statistics: View statistics for this item

Available Versions of this Item

Actions (login required)

Item Control Page Item Control Page