A Capabilities Description in Terms of the Network Monitoring and Assessment Module of CSAP21

By Leonard LaPadula , Therese Metcalf

This paper presents the intrusion detection and vulnerability scanning capabilities that the authors consider necessary for the U.S

Download Resources


PDF Accessibility

One or more of the PDF files on this page fall under E202.2 Legacy Exceptions and may not be completely accessible. You may request an accessible version of a PDF using the form on the Contact Us page.

This paper presents the intrusion detection and vulnerability scanning capabilities that the authors consider necessary for the U.S. Air Force network. These capabilities are described as requirements for the Network Monitoring and Assessment (NMA) module of the Computer Security Assistance Program for the Twenty-First Century (CSAP21) architecture. The advantage of this approach is that it provides a global and comprehensive context in which to describe intrusion detection system (IDS) requirements. We have adapted and organized requirements derived from a number of sources, including intrusion monitoring practitioners.