Guidelines for Evidence Collection and Archiving
Author(s) -
D. Brezinski,
Tom Killalea
Publication year - 2002
Publication title -
rfc
Language(s) - English
Resource type - Reports
DOI - 10.17487/rfc3227
Subject(s) - computer science , world wide web , data science , information retrieval
A "security incident" as defined in the "Internet Security Glossary", RFC 2828, is a security-relevant system event in which the system's security policy is disobeyed or otherwise breached. The purpose of this document is to provide System Administrators with guidelines on the collection and archiving of evidence relevant to such a security incident.
Accelerating Research
Robert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom
Address
John Eccles HouseRobert Robinson Avenue,
Oxford Science Park, Oxford
OX4 4GP, United Kingdom