节点文献

基于危险模式的IDS异常检测模型

Model of Anomaly Detection Based on Danger Theory for IDS

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 黄柳萍梁家荣冯朝一李天志曾静

【Author】 HUANG Liu-ping1,LIANG Jia-rong1,FENG Chao-yi1,LI Tian-zhi2,ZENG Jing3(1.School of Computer & Electronic Information,Guangxi University,Nanning Guangxi 530004,China;2.Dept.of Computer,Dezhou University,Dezhou Shandong 253023,China;3.College of Mathematics & Physics,Zhejiang Normal University,Jinhua Zhejiang 321004,China)

【机构】 广西大学计算机与电子信息学院德州学院计算机系浙江师范大学数理与信息工程学院 广西南宁530004广西南宁530004山东德州253023浙江金华321004

【摘要】 针对当前入侵检测技术在检测新入侵的不足,分析了危险模式理论应用于异常检测的可行性,提出了一个新型的基于危险模式的自适应IDS异常检测系统模型以及相关算法。该系统有效地降低了误报率和漏报率,具有自适应、自学习、自组织和分布性特点。

【Abstract】 The feasibility of danger theory applied into anomaly detection was analyzed by taking into account the deficiencies of current technology in detecting the newly intrusion.Then a novel adaptive anomaly detection system model for IDS,based on danger theory,and interrelated algorithm were proposed,which lead to a decrease in false negative rate and false positive rate.The system is characterized by self-adaptability,self-learning,self-organization,and distribution.

【基金】 教育部留学回国人员科研专项基金资助项目(教外司留[2004]527);广西高校百名学科带头人专项基金资助项目(桂人教[2003]97号);广西研究生教育创新计划资助项目(2006105930812M21)
  • 【文献出处】 计算机应用研究 ,Application Research of Computers , 编辑部邮箱 ,2007年07期
  • 【分类号】TP393.08
  • 【被引频次】2
  • 【下载频次】122
节点文献中: 

本文链接的文献网络图示:

本文的引文网络