Development of a legal framework for intrusion detection

被引:0
作者
Johnston, SR [1 ]
机构
[1] Commun Secur Estab, Ottawa, ON K1G 3Z4, Canada
来源
RECENT ADVANCES IN INTRUSION DETECTION, PROCEEDINGS | 2002年 / 2516卷
关键词
anti-terrorism law; criminal law; interception; intrusion detection; privacy; private communications; wiretap;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
To meet demands for increased interconnectivity, efficiency or competitiveness, organizations increasingly rely on technology. This trend creates significant opportunities to improve service delivery and to move into new areas of endeavour. But reliance on an inherently insecure infrastructure exposes organizations to a constantly evolving threat environment. Not only has the nature of the threat changed, so too has the scope of the protection problem. Protection of information systems is now seen as a component of national security. As organizational assets move online, so does the threat. Key sources of threat information are now online, including within the network communications themselves. This puts organizations in a position where they must monitor network communications in order to obtain intelligence, indications and warnings of intrusions and evidence to support criminal prosecution as appropriate. One method,of performing this monitoring is through the use of intrusion detection systems (IDS). However, this may involve the monitoring of private communications, which introduces a number of legal privacy and criminal law) concerns. While existing legislation adequately addresses interception by S&I and law enforcement agencies, they generally fail to address interception of network traffic by other public or private sector organizations. This paper seeks to identify and discuss some of the key legal issues affecting the development of a general legal framework for intrusion detection for network protection.
引用
收藏
页码:138 / 157
页数:20
相关论文
共 21 条
  • [1] [Anonymous], CRITICAL FDN PROTECT
  • [2] [Anonymous], 1998, The Canadian Oxford Dictionary
  • [3] BLACK J, 2001, BUSINESS WEEK O 1129
  • [4] BROWN I, REGULATION INVESTIGA
  • [5] GEIST M, 2002, GLOBE MAIL NEWS 0628
  • [6] Gellman Barton, 2002, WASHINGTON POST 0627
  • [7] HAYES B, EU ANTITERRORISM ACT
  • [8] JOHNSTON SR, 2001, P REC ADV INTR DET 2, P150
  • [9] LEE SC, P 2001 IEEE MAN SYST, P239
  • [10] PRUITT S, 2002, FBI GETS NEW WEB SEA