节点文献

基于数据融合的入侵防御模型

An Intrusion Prevention Model Based on Data Fusion

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 刘林强李学宝任圣

【Author】 LIU Lin-qiang1,LI Xue-bao 1,2 ,REN S heng3(1.School of Mathematics & Computer Science, Nanjing Normal Universi ty,Nanjing Jiangsu 210097, China;2.School of Information Engineering, Inner Mongolia University of Science & Techno logy, Baotou Inner Mongolia 013450, China;3.Middle School of Tumote, Huh ehot Inner Mongolia 010022, China)

【机构】 南京师范大学计算机科学系呼和浩特土默特中学 江苏南京210097江苏南京210097内蒙古科技大学信息工程学院内蒙古包头013450内蒙古呼和浩特010022

【摘要】 首先分析了目前比较热门的入侵防御系统的体系结构,并指出了传统单个入侵防御系统会导致单点故障、拒绝正常服务等一系列问题,同时还存在不能检测分布式协作攻击和未知攻击及性能等问题。为了解决传统IPS上述的缺点,在原有的两类入侵事件的基础上重新划分,把入侵事件分为三类,并结合多传感器数据融合技术和入侵容忍技术提出一种深度入侵防御模型。最后通过仿真实验验证了该模型检测和防御入侵的可行性。

【Abstract】 At first, this paper analyses popular IPS in detail and points out it’s advantage and insufficiency, such as single-end failure , denial-of-service and so on. At the same time traditional IPS do not detect distributed cooperation and unknown attack. The intrusion affairs are partitione d three kinds on the basis of two types. Combining data fusion algorithm of multi-sensors an d the intrusion tolerance, a detection and defense-detection and response model based on defense in depth theory is proposed, in order to solve the problem of the traditional IPS. In the end, the simulation results validate the feasibility of this model’s detection and prevention of intrusion.

【关键词】 入侵防御深度防御数据融合
【Key words】 Intrusion PreventionDefense in DepthData Fusion
【基金】 国家信息产业部基金资助项目(211070B414);国家“十五”项目;“211工程”重点学科建设项目(181070H901)
  • 【文献出处】 计算机应用研究 ,Application Research of Computers , 编辑部邮箱 ,2005年07期
  • 【分类号】TP393.08
  • 【被引频次】12
  • 【下载频次】212
节点文献中: 

本文链接的文献网络图示:

本文的引文网络