<?xml version="1.0" encoding="UTF-8"?>
<OAI-PMH xmlns="http://www.openarchives.org/OAI/2.0/" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.openarchives.org/OAI/2.0/ http://www.openarchives.org/OAI/2.0/OAI-PMH.xsd">
  <responseDate>2026-07-26T16:45:04Z</responseDate>
  <request identifier="1493" metadataPrefix="oai_dc" verb="GetRecord">https://drops.dagstuhl.de/oai</request>
  <GetRecord>
    <record>
      <header>
        <identifier>oai:drops-oai.dagstuhl.de:1493</identifier>
        <datestamp>2024-03-06T11:07:59Z</datestamp>
        <setSpec>ddc:004</setSpec>
        <setSpec>open_access</setSpec>
      </header>
      <metadata>
        <oai_dc:dc xmlns:oai_dc="http://www.openarchives.org/OAI/2.0/oai_dc/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:schemaLocation="http://www.openarchives.org/OAI/2.0/oai_dc/ http://www.openarchives.org/OAI/2.0/oai_dc.xsd">
          <dc:title>2. 08102 Working Group – Early Warning Systems</dc:title>
          <dc:creator>Biskup, Joachim</dc:creator>
          <dc:creator>Hämmerli, Bernhard</dc:creator>
          <dc:creator>Meier, Michael</dc:creator>
          <dc:creator>Schmerl, Sebastian</dc:creator>
          <dc:creator>Tölle, Jens</dc:creator>
          <dc:creator>Vogel, Michael</dc:creator>
          <dc:subject>Intrusion detection and prevention</dc:subject>
          <dc:subject>attack response and countermeasures</dc:subject>
          <dc:subject>reactive security</dc:subject>
          <dc:subject>automated security</dc:subject>
          <dc:subject>survivability and self-protection</dc:subject>
          <dc:subject>ma network monitoring</dc:subject>
          <dc:subject>flow analysis</dc:subject>
          <dc:subject>denial of service detection and response</dc:subject>
          <dc:subject>event correlation</dc:subject>
          <dc:description>Early Warning Systems aim at detecting unclassified but potentially harmful sys-tem behavior based on preliminary indications and are complementary to Intrusion Detection Systems. Both kinds of systems try to detect, identify and react before pos-sible damage occurs and contribute to an integrated and aggregated situation report (big picture).&#13;
A particular emphasis of Early Warning Systems is to establish hypotheses and predictions as well as to generate advises in still not completely understood situations. Thus the term early has two meanings, a) to start early in time aiming to minimize damage, and b) to process uncertain and incomplete information.</dc:description>
          <dc:publisher>Schloss Dagstuhl – Leibniz-Zentrum für Informatik</dc:publisher>
          <dc:contributor>Joachim Biskup and Bernhard Hämmerli and Michael Meier and Sebastian Schmerl and Jens Tölle and Michael Vogel</dc:contributor>
          <dc:date>2008</dc:date>
          <dc:relation>Is Part Of Dagstuhl Seminar Proceedings, Volume 8102, Perspectives Workshop: Network Attack Detection and Defense (2008)</dc:relation>
          <dc:type>InProceedings</dc:type>
          <dc:type>Text</dc:type>
          <dc:type>doc-type:ResearchArticle</dc:type>
          <dc:type>publishedVersion</dc:type>
          <dc:format>application/pdf</dc:format>
          <dc:identifier>doi:10.4230/DagSemProc.08102.2</dc:identifier>
          <dc:identifier>urn:nbn:de:0030-drops-14936</dc:identifier>
          <dc:identifier>https://drops.dagstuhl.de/entities/document/10.4230/DagSemProc.08102.2</dc:identifier>
          <dc:language>eng</dc:language>
          <dc:rights>https://creativecommons.org/licenses/by/4.0/legalcode</dc:rights>
        </oai_dc:dc>
      </metadata>
    </record>
  </GetRecord>
</OAI-PMH>
