节点文献

基于数据分流实现高速网入侵检测的研究与实践

Research and Practice on High Speed IDS Based on Data Distribution

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 朱奋起陈宇李雪莹许榕生

【Author】 ZHU Fen-qi~1, CHEN Yu~2, LI Xue-ying~(2,3), XU Rong-sheng~2 (1. College of Information Science & Technology, Fuzhou University, Fttzhou Fujian 350002, China ; 2. Center of Computing, Institute of High Energy Physics,Chinese Academy of Sciences,Beijing 100039,China; 3. Center of Network Information,Institute of Medical Information,Academy of Military Medical Sciences, Beijing 100850, China)

【机构】 福州大学信息科学与技术学院中国科学院高能物理研究所计算中心中国科学院高能物理研究所计算中心 福建 福州 350002北京 100039北京 100039 军事医学科学院 医学情报研究所 网络信息中心 北京 100850北京 100039

【摘要】 随着以太网的发展,目前基于网络的入侵检测系统已经无法适应高速增长的网络速度,提出了一种数据分流的方法,将捕获的网络数据按某种规则分流转发至多个检测设备进行处理,以达到提高整个系统的检测性能,解决高速网络下网络入侵检测设备因性能缺陷而带来的丢包问题。

【Abstract】 Nowadays,with Ethernet technology developing,the network intrusion detection system based on IP packet hasn’t been adaptive to the increasing speed of the bandwidth. This paper presents a method of distribution data to settle this problem. The network traffic is divided to several parts and transferred to different devices where data are captured and analyzed so as to improve the detection performance of system.

【关键词】 入侵检测高速网数据分流
【Key words】 NIDSHigh- speed NetworkData Distribution
【基金】 国家重点基础研究发展规划“973”项目(C1999035806);中国科学院知识创新工程重大项目(KGCX1-09)
  • 【文献出处】 计算机应用研究 ,Application Research of Computers , 编辑部邮箱 ,2004年05期
  • 【分类号】TP393.08
  • 【被引频次】9
  • 【下载频次】108
节点文献中: 

本文链接的文献网络图示:

本文的引文网络