Modified RLE algorithm for sattilite image compression

Hassan Kassim Albahadily, Viktar Yu. Tsviatkou · Репозиторий БГУИР (BSUIR Repository) · 2017

Security incidents and events monitoring systems (SIEM) play an important role in enterprise information systems.SIEM systems have one or more log servers that perform log analysis, and one or more database servers that store logs.Regardless of how the SIEM server receives log data (either agentless or agent-based), the server analyzes data from all sources, correlates events among log entries, identifies and prioritizes meaningful events, and initiates response to events, if necessary.SIEM solutions usually make it possible to protect privacy, integrity, and availability of these logs.For example, communications between agents and SIEM servers usually pass through a reliable TCP protocol in encrypted form.In addition, agents and SIEM servers can use authentication before they can transfer the data (for example, sending data from the agent to the server, making server-side changes in the agent settings).Zabbix software was studied to implement a SIEM-system for a corporate network.Among many well-known monitoring systems Zabbix monitoring system was chosen for the implementation of SIEM.The capabilities of this system make it possible to use it as a system for collecting information, for its further processing and detecting IS events and logs analyzing in various operating systems, for making a decision on the occurrence of an IS incident, for notification of staff members responsible for the IS system, and for response to the known threats in a preventive manner.On the basis of the examined information on the Zabbix system and the capabilities of hardware virtualization, a laboratory model was created, on which the network attack and the Zabbix system response to it can be demonstrated.Depending on the hardware resources, the model can be expanded, which makes it a useful tool for the investigation of network attacks, the information system response to network attacks, and the SIEM-system testing on the basis of the Zabbix software.

Read the paper · More papers on PaperTik