节点文献
基于改进NB分类方法的网络异常检测模型
Network Anomaly Detection Model Based on Improved Nave Bayesian Classifier
【摘要】 随着计算机网络和分布式应用的复杂化和多样化,智能化网络异常检测技术逐渐成为有效监测和控制系统的重要方法。该文提出基于改进NB分类方法的网络异常检测算法,采用互信息的方法对网络属性进行关键特征提取。实验结果表明,该异常检测方法对DoS和Probing类攻击的检测率较高,具有较低的虚警率。
【Abstract】 Due to the diversity and quickly growth of modern network and distributed systems, intelligent anomaly detection can play an importantrole in monitoring and controlling network systems. This paper presents a network anomaly detection model based on enhanced Nave Bayesianclassifier. Mutual information in information theory is used as basis of the algorithm of feature selection. Experimental results show that the networkanomaly detection model performs better in detection of DoS and probing attack, and has lower false positive.
【关键词】 网络异常检测;
朴素贝叶斯分类方法;
特征选择;
互信息;
【Key words】 network anomaly detection; Nave Bayesian classifier; feature selection; mutual information;
【Key words】 network anomaly detection; Nave Bayesian classifier; feature selection; mutual information;
【基金】 国家“863”计划基金资助项目“支持大规模分布式网络应用的自主计算环境的研究”(2003AA115230)
- 【文献出处】 计算机工程 ,Computer Engineering , 编辑部邮箱 ,2008年05期
- 【分类号】TP393.08
- 【被引频次】8
- 【下载频次】153