节点文献

基于最小二乘支持向量机的Linux主机入侵检测系统

Linux-hosted Intrusion Detection System Using Least Square Support Vector Machines

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 王勇杨辉华王行愚何倩

【Author】 Wang Yong 1,2 Yang Huihua 1,2 Wang Xingyu 1 He Qian 21 (College of Information,East China University of Science&Technology,Shanghai200237) 2 (Guilin University of Electronic Technology,Guilin541004)

【机构】 华东理工大学信息学院桂林电子工业学院 上海200237桂林电子工业学院桂林541004上海200237桂林电子工业学院上海200237桂林541004

【摘要】 论文探讨在新的网络软硬件环境、各种新的攻击工具与方法下,建立一个实际的网络入侵异常检测系统的可行性。为此,论文建立一个基于Linux主机的入侵检测实验环境,在同时提供多种正常服务的条件下实施攻击、提取特征并应用最小二乘支持向量机(LS-SVM)检测入侵。结果表明检测系统设计合理,特征提取及检测方法有效。

【Abstract】 This paper aims at exploring the feasibility of establishing an anomaly detection system for network intrusion under the up-to-date hardware and software environment and all sorts of newly-invented attacking tools and methods.For this purpose,a Linux-hosted intrusion detection experimental system is set up,and attacks are laughed while the Linux server providing normal services,and then an LS-SVM classifier is used as a intrusion detector,which uses fea-tures real-timely abstracted.The experiment shows that the anomaly detection system is reasonably designed,the extracted features are effective,and the IDS system can detect accurately both known and unknown attacks.

【基金】 国家自然科学基金项目(编号:69974014);国家重点基础研究发展规划项目(编号:2002CB32200);教育部科学技术研究重点项目(编号:00053)
  • 【文献出处】 计算机工程与应用 ,Computer Engineering and Applications , 编辑部邮箱 ,2005年02期
  • 【分类号】TP393
  • 【被引频次】8
  • 【下载频次】200
节点文献中: 

本文链接的文献网络图示:

本文的引文网络