Rule conversion mechanism between NIDPS engines
Jang Hyeon Jeong, Si Young Lee, Gyung Ho Park, Seong Gon Choi · 2020
This paper presents rule conversion mechanism between suricata and snort and implementation results about rule conversion. Rules of one Network Intrusion Detection and Prevention Systems (NIDPS) engine can't use without conversion in other engines. Because each NIDPS engine has different rule formats which available procotols, keywords and rule options. Therefore, rule conversion process is essential to use rule of other NIDPS engines.