节点文献
一种基于模糊理论的自适应入侵检测方法
An Adaptive Intrusion Detection Method Based on Fuzzy Theory
【Author】 LINGHU Da-zhi, LI Tao-shen (School of Computer and Electronics and Information, Guangxi University, Nanning 530004, China)
【机构】 广西大学计算机与电子信息学院;
【摘要】 针对模糊转换过程中等价转换失真问题和网络记录中属性差异对入侵检测造成的影响,提出关键属性列表、属性作用度列表和属性类型列表等概念,将动态反馈机制引入入侵检测,提出一种基于模糊理论的自适应入侵检测方法。实验表明该方法能有效提高入侵检测系统的检测率,降低其误报率,增强计算机系统抵御入侵及自身免疫能力。
【Abstract】 In view of the influence of equivalent conversion distortion in fuzzy conversion process and difference in network records attribute, this paper puts forward such conception as the key attribute table, attributes effect degree and attribute types list, and bring the dynamic feedback mechanism into intrusion detection system, proposes an adaptive intrusion detection method based on the theory of fuzzy. The experimental results show that the method can effectively enhance the intrusion detection system detection rates and reduce their error rate, strengthen their immune system to resist the invasion.
【Key words】 intrusion detection; fuzzy cluster; self-feedback; adaptive;
- 【会议录名称】 2007年全国开放式分布与并行计算机学术会议论文集(上册)
- 【会议名称】2007年全国开放式分布与并行计算机学术会议
- 【会议时间】2007-10-12
- 【会议地点】中国广西南宁
- 【分类号】TP393.08
- 【主办单位】中国计算机学会开放系统专业委员会