Publication detail

Security Incident Response Automation for xPON Networks

OUJEZSKÝ, V. HORVÁTH, T. HOLÍK, M.

Original Title

Security Incident Response Automation for xPON Networks

Type

journal article in Web of Science

Language

English

Original Abstract

This paper presents a developed tool for automated security incident reporting in passive optical networks. This tool interacts with our programmable development card, developed detection modules, and TheHive project. The custom implementation of the solution has resulted in anomaly reporting templates for xPON networks that can be universally applied and new definitions of indicators of compromise. The custom implementation consists of a collector and middleware layer between the programmable card and Apache Kafka.

Keywords

Automation; CERT; Incidents; Reports; SIRAP; Tool

Authors

OUJEZSKÝ, V.; HORVÁTH, T.; HOLÍK, M.

Released

25. 4. 2022

Publisher

Journal of Communications Software and Systems

Location

Croatia

ISBN

1845-6421

Periodical

Journal of Communications Software and Systems

Year of study

18

Number

2

State

Republic of Croatia

Pages from

144

Pages to

152

Pages count

9

URL

Full text in the Digital Library

BibTex

@article{BUT177656,
  author="Václav {Oujezský} and Tomáš {Horváth} and Martin {Holík}",
  title="Security Incident Response Automation for xPON Networks",
  journal="Journal of Communications Software and Systems",
  year="2022",
  volume="18",
  number="2",
  pages="144--152",
  doi="10.24138/jcomss-2022-0033",
  issn="1845-6421",
  url="https://jcoms.fesb.unist.hr/10.24138/jcomss-2022-0033/"
}