节点文献

一种基于关联规则的分布式入侵检测模型

A Model of Distributed Intrusion Detection Based on Association Rules

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 孙伟平顾恩超

【Author】 SUN Wei-ping,GU En-chao(College of Computer Science & Technology,Huazhong University of Science & Technology,Wuhan 430074,China)

【机构】 华中科技大学计算机学院华中科技大学计算机学院 武汉430074武汉430074

【摘要】 高虚警率和漏警率是当前入侵检测系统(IDS)的主要问题。采用基于CBW关联规则的数据挖掘算法,提出了一种新的分布式入侵检测模型,并分析了各模块的具体功能与实现。经实验分析,本模型可以有效降低虚警率和漏警率,同时在一定程度上实现各分节点间的快速协作检测能力。

【Abstract】 High rate of false alarms and missing alarms are the primary problem in current intrusion detection system(IDS).In this paper,a new model of distributed intrusion detection is proposed,which is based on CBW association rules algorithm to mine new rules and intrusion event,and the function and implement of each module is analyzed.The experiment result showed that this model could decrease false alarms rate and missed alarms rate effectually,this model could also improve detection speed and realize the cooperation among each code.

【关键词】 入侵检测数据挖掘关联规则
【Key words】 Intrusion detectionData miningAssociation rules
【基金】 国家自然科学基金资助项目(60373088)
  • 【分类号】TP393.08
  • 【被引频次】3
  • 【下载频次】79
节点文献中: 

本文链接的文献网络图示:

本文的引文网络