ISO/IEC 18043-2006 信息技术.安全技术.入侵检测系统的选择、开发和操作

查看4193 | 回复5 | 2018-8-19 00:39 | 显示全部楼层 |阅读模式
标准号:ISO/IEC 18043-2006
英文名称:Information technology - Security techniques - Selection, deployment and operations of intrusion detection systems
被替代标准:ISO/IEC 27039-2015
代替标准:ISO/IEC FDIS 18043-2006
采用标准:ANSI/INCITS/ISO/IEC 18043-2008,IDT;BS ISO/IEC 18043-2006,IDT
起草单位:ISO/IEC JTC 1/SC 27
标准简介:This International Standard provides guidelines to assist organizations in preparing to deploy Intrusion
Detection System (IDS). In particular, it addresses the selection, deployment and operations of IDS. It also
provides background information from which these guidelines are derived.
This International Standard is intended to be helpful to
a) an organization in satisfying the following requirements of ISO/IEC 27001:
- The organization shall implement procedures and other controls capable of enabling prompt
detection of and response to security incidents.
- The organization shall execute monitoring and review procedures and other controls to properly
identify attempted and successful security breaches and incidents.
b) an organization in implementing controls that meet the following security objectives of ISO/IEC 17799:
- To detect unauthorized information processing activities.
- Systems should be monitored and information security events should be recorded. Operator logs and
fault logging should be used to ensure information system problems are identified.
- An organization should comply with all relevant legal requirements applicable to its monitoring and
logging activities.
- System monitoring should be used to check the effectiveness of controls adopted and to verify
conformity to an access policy model.
An organization should recognize that deploying IDS is not a sole and/or exhaustive solution to satisfy or meet
the above-cited requirements. Furthermore, this International Standard is not intended as criteria for any kind
of conformity assessments, e.g., Information Security Management System (ISMS) certification, IDS services
or products certification.

ISO_IEC 18043-2006 信息技术.安全技术.入侵检测系统的选择、开发和操作.pdf (634.19 KB)

使用道具 举报