Research Article

Network Intrusion Detection with Threat Agent Profiling

Table 2

Significant key in IDEA format.

Name of key Type Example

CategoryArray of EventRecon.Scanning
Source:IP4Array of Net410.10.0.1
Source:PortArray of Integer6550
Source:ProtoArray of ProtocolNameTCP
Target:IP4Array of Net410.10.10.2
Target:PortArray of Integer80
Target:ProtoArray of ProtocolNameHTTP
EventTimeTimestamp2017-03-16 18:06:44
CeaseTimeTimestamp2017-03-31 21:51:30