节点文献

基于分布式Agent的入侵检测系统研究

Research of intrusion detection system based on distributed agent

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 郑孝遥陆阳

【Author】 ZHENG Xiao-yao, LU Yang (Department of Computer and Information, Hefei University of Technology, Hefei 230009, China)

【机构】 合肥工业大学计算机与信息学院合肥工业大学计算机与信息学院 安徽合肥230009安徽合肥230009

【摘要】 随着网络入侵行为变得越来越普遍和复杂,传统的单一入侵检测系统已不能满足网络安全的发展需求,针对当前形势,为了提高计算机及网络系统的防御能力,提出了一种基于分布式Agent技术的入侵检测模型,并给出了一种可疑度算法和多IP地址连续报告策略,经测试和论证,系统可有效地阻止已知和未知的攻击行为,最后对系统的整体性能进行了详细描述。

【Abstract】 Network-based attacks have become common and sophisticated. For this reason, traditional intrusion detection system based on single layer can’t meet the increasingly growing network security’s requirement. Under the situation, in order to improve resistive ca- pability of computer and network system , a prototype— — intrusion detection system is presented based on distributed agent, and then a doubt value algorithm and a multi-IP address sequential report policy are proposed. After testing and demonstrating, this system can prevent known and unknown attacks effectively. Finally, the whole capability of this system is particularly introduced.

  • 【文献出处】 计算机工程与设计 ,Computer Engineering and Design , 编辑部邮箱 ,2005年05期
  • 【分类号】TP393.08
  • 【被引频次】4
  • 【下载频次】86
节点文献中: 

本文链接的文献网络图示:

本文的引文网络