节点文献

基于无监督Hebb规则的入侵检测方法

Unsupervised Hebb rule based intrusion detection method

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 么耀宗李德昌李慧盈金星

【Author】 YAO Yao-zong,LI De-chang,LI Hui-ying,JIN Xing 1.College of Computer Science and Technology,Jilin University,Changchun 130012,China 2.College of Software,Jilin University,Changchun 130012,China

【机构】 吉林大学计算机科学与技术学院吉林大学软件学院 长春130012长春130012

【摘要】 通过分析现有的入侵检测方法,提出了一个基于无监督Hebb规则的入侵检测方法。此方法采用高效的抓包工具抓取计算机网络数据包;根据抓取到的网络数据包的信息定义行为变量;根据无监督的Hebb规则构建网络行为模型;采用Hamming距离进行检测。实验证明该方法能够正确地构造网络行为模型,并能准确地检测出异常行为。

【Abstract】 Through analyzing existing intrusion detection methods,an unsupervised Hebb rule based intrusion detection method is put forward.All the network data grams can be caught through an efficient method.The network behavior variables are defined by the caught data gram information.Hebb rule is used to build the network behavior model.After building the behavior model,intrusion behavior can be detected through Hamming distance method.The experimental results prove that the intrusion detection method based on Hebb rule can correctly build the network behavior model and detect abnormal behavior in local area network accurately.

【关键词】 入侵检测Hebb规则数据包Hamming距离
【Key words】 intrusion detectionHebb ruledata gramHamming distance
【基金】 国家科学技术部重点项目(No.2003DIA5G028);吉林大学博士生创新基金项目(No.503042)
  • 【文献出处】 计算机工程与应用 ,Computer Engineering and Applications , 编辑部邮箱 ,2007年23期
  • 【分类号】TP393.08
  • 【被引频次】5
  • 【下载频次】148
节点文献中: 

本文链接的文献网络图示:

本文的引文网络