节点文献

基于Agent和数据挖掘的自适应入侵检测系统

Adaptive Intrusion Detection System Based on Agent and Data Mining

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 杨武何波程勇军李波

【Author】 YANG Wu1,2, HE Bo1, CHENG Yong-jun1, LI Bo1 (1.Department of Computer Science, Chongqing Institute of Technology, Chongqing 400050, China; 2.College of Computer Science, Chongqing University, Chongqing 400030, China)

【机构】 重庆工学院计算机系重庆工学院计算机系 重庆400050重庆大学计算机学院重庆400050重庆400050

【摘要】 入侵检测系统是网络安全保护体系中的一个重要组成部分,目前大多数入侵检测系统不能适应网络环境的变化,即不具备自适应性.针对这种情况,提出了一种入侵检测系统的自适应策略,该自适应策略由条件空间和策略空间构成,条件空间用来描述网络环境,策略空间用来描述采用的策略.对于条件空间中的某一具体的环境状态,在策略空间存在唯一的策略与之对应.在构建自适应策略的基础上,利用Agent和数据挖掘技术,设计了一个自适应入侵检测系统.模拟实验表明了该自适应策略的有效性.

【Abstract】 Intrusion detection system is an essential component of network security protection mechanisms. Most intrusion detection system can not adapt the variation of network environment. Aiming at this problem, an adaptive strategy that composed of condition space and strategy space is proposed. The condition space describes the network environment and the strategy space describes the strategy. There is an exclusive strategy corresponds to a certain environment state in condition space. On the base of the adaptive strategy, an adaptive intrusion detection system based on agent and data mining is de- signed. The simulation experiments indicate that the adaptive strategy is effective.

【关键词】 入侵检测系统数据挖掘智能体
【Key words】 IDSdata miningagent
【基金】 教育部科技重点项目(03115);重庆市科技公关项目(CSTC2004AC2018)
  • 【文献出处】 重庆大学学报(自然科学版) ,Journal of Chongqing University(Natural Science Edition) , 编辑部邮箱 ,2005年08期
  • 【分类号】TP393.08
  • 【被引频次】1
  • 【下载频次】128
节点文献中: 

本文链接的文献网络图示:

本文的引文网络