节点文献
基于报警偏离分析的入侵检测研究
Study of Intrusion Detection Based on Alarm Deviation Analysis
【摘要】 在入侵检测实践中频繁报警与高误警率一直是难以避免的问题。针对这样的情况,文章提出了一种入侵检测中的报警偏离分析方法,它在减轻频繁报警冲击的同时,通过综合评估的方式降低了错误报警的影响。实验结果表明了该方法的有效性。
【Abstract】 Frequent alarms and high false rate are nearly unavoidable in intrusion detection. For the situation, a method of alarm deviation analysis in intrusion detection is proposed in this article. It not only mitigates the impact of frequent alarms but also minimizes the effect of false alarms through integrative evaluation. The testing result shows the effectiveness of the method.
- 【文献出处】 信息安全与通信保密 ,China Information Security , 编辑部邮箱 ,2006年11期
- 【分类号】TP393.08
- 【下载频次】29