节点文献

基于LightGBM的网络入侵检测系统

Network Intrusion Detection System Model Based on LightGBM

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 莫坤王娜李恒吉李朝阳李剑

【Author】 Mo Kun;Wang Na;Li Hengji;Li Chaoyang;Li Jian;School of Computer Science , Beijing University of Posts and Telecommunications;

【机构】 北京邮电大学计算机学院

【摘要】 入侵检测系统(intrusion detection system,IDS)是一种能够发现疑似入侵行为并采取相应措施的网络安全设备.现有IDS通常采用传统的常用机器学习算法和简单的深度学习算法,但始终难以避免训练速度慢、准确率不够高的缺点.针对这种情况,提出了一种基于LightGBM算法的网络入侵检测系统,对疑似入侵行为样本进行准确分类,该方法可以对数据进行采样从而极大地减小了数据计算量.使用入侵检测系统的标准数据集KDD99数据集,准确率达到94. 7%,训练时间缩短至422s.实验结果表明:基于LightGBM算法的网络入侵检测系统相较于常用算法在取得更高准确率的同时训练模型的速度也提高10倍左右.

【Abstract】 Intrusion detection system(IDS) is one class of network security device which can discovered suspected intrusion and take corresponding measures for captured traffic which is suspected of intrusion. The existing IDS is usually based on traditional machine learning or simple deep learning algorithms. However, these are too slow in training phase and has not achieved the expected detetion rate. Under these circumstances, this paper proposes a network IDS based on LightGBM. This algorithm can sample the datas and features, which are much less computationally intensive. In this experiment, the accuracy rate reached 94. 72 % and the training time was shortened to 422 seconds with KDD99 dataset. The experimental results show that LightGBM is at least ten times faster than the common algorithm in training phase, while the accuracy rate ishigher than the existing algorithms.

【基金】 国家自然科学基金项目(U1636106,61472048)
  • 【文献出处】 信息安全研究 ,Journal of Information Security Research , 编辑部邮箱 ,2019年02期
  • 【分类号】TP393.08
  • 【被引频次】26
  • 【下载频次】562
节点文献中: 

本文链接的文献网络图示:

本文的引文网络