节点文献

入侵检测系统中特征匹配的改进

An Intrusion Detection System Based on Protocol Analysis

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 喻飞朱妙松朱淼良安吉尧陈兵华刘晖

【Author】 Yu Fei 1,2 Zhu Miaosong 1 Zhu Miaoliang 1 An Jiyao 2 Chen Binghua 3 Liu Hui 11 (Artificial Intelligence Institute of Zhejiang University,Hangzhou310027) 2 (Computer and Communication Institute of Hunan University,Changsha410082) 3 (Hunan Television Station,Changsha410030)

【机构】 浙江大学人工智能研究所,浙江大学人工智能研究所,浙江大学人工智能研究所,湖南大学计算机与通信学院,,湖南电视台,浙江大学人工智能研究所 杭州310027湖南大学计算机与通信学院,长沙410082,杭州310027,杭州310027,长沙410082,长沙410030,杭州310027

【摘要】 有效的入侵检测是保证系统安全所必不可少的。特征匹配是现有入侵检测系统所使用的基本方法。网络的高速发展,现有的特征匹配方法已成了高速网络环境下入侵检测的瓶颈。文章论述了通过在现有匹配方法的基础上引入协议分析的多层次入侵检测匹配,能减小目标匹配范围,提高系统检测效率。

【Abstract】 Effective intrusion detection is necessary for system security.Mode matching is an essential method used in existed intrusion detection system.With the quick development of network,existing mode matching method has become the bottleneck in the environment of high-speed network.This paper describes a new matching method with the name "multi-layer intrusion detection matching based on the protocol analysis"based on existing mode matching method.It can reduce the scope of matching and can improve the efficiency of intrusion detection.

【基金】 国家信息化工作领导小组、计算机网络与信息安全管理工作办公室项目(编号:2001-研-041)。
  • 【文献出处】 计算机工程与应用 ,Computer Engineering and Applications , 编辑部邮箱 ,2003年29期
  • 【分类号】TP393.08
  • 【被引频次】23
  • 【下载频次】165
节点文献中: 

本文链接的文献网络图示:

本文的引文网络