期刊文献+

基于Mobile Agents的新型分布式入侵检测系统

A mobile-agents-based distributed intrusion detection system
下载PDF
导出
摘要 在分析一般入侵检测方法的基础上 ,提出了一种新的基于MobileAgent (MA)的分布式入侵检测方法 .该方法兼顾了原有的优点 ,并在一定程度上弥补了原有方法的不足 .重点讨论了MA在入侵检测系统中的应用 ,叙述了如何通过MAs之间的协作进行入侵检测 ,并利用MA的特性对入侵检测系统本身的安全性和抗毁灭性做了具体的论述 .提出的入侵检测结构提高了系统的抗毁性和自恢复能力 ,提高了入侵检测系统自身的安全性 .说明了系统的体系结构。 This thesis introduces the role of IDS in computer and network security and introduces the normal methods of intrusion detection and presents an new distributed IDS(intrusion detection system) based on mobile agent technology. The new method is more advantageous and it is easy to add new cooperating hosts and agents and to expand new intrusion patterns. This thesis emphasized the application of MA in IDS and formulated the cooperation among MAs. The cooperation among agents is implemented just by communicat...
出处 《华中科技大学学报(自然科学版)》 EI CAS CSCD 北大核心 2003年第S1期165-167,共3页 Journal of Huazhong University of Science and Technology(Natural Science Edition)
基金 江苏省自然科学基金资助项目 (BK2 0 0 2 0 91)
关键词 入侵检测 MOBILE AGENT 分布式 协作 抗毁性 intrusion detection system mobile agent distributives cooperation survivability
  • 相关文献

参考文献1

二级参考文献7

  • 11,Bishop M. A model of security monitoring. In: Proceedings of the 5th Annual Computer Security Applications Conference. 1989. 46~52. http://seclab.cs. ucdavis.edu/papers.html
  • 22,Staniford-Chen S, Cheung S, Crawford R et al. GrIDS: a graph based intru sion detection system for large networks. In: Proceedings of the 19th National Information Systems Security Conference, Vol 1. National Institute of Standards a nd Technology, 1996. 361~370
  • 33,Hochberg J, Jackson K, Stallings C et al. NADIR: an automated system for detecting network intrusion and misuse. Computers and Security, 1993,12(3):235~2 48
  • 44,White G B, Fisch E A, Pooch U W. Cooperating security managers: a peer-based intrusion detection system. IEEE Network, 1996,10(1):20~23
  • 55,Forrest S, Hofmeyr S A, Somayaji A. Computer immunology. Communications of th e ACM, 1997,40(10):88~96
  • 66,Hunteman W. Automated information system alarm system. In: Proceedings of the 20th National Information Systems Security Conference. National Institute of Standards and Technology, 1997
  • 77,Porras P A, Neumann P G. EMERALD: event monitoring enabling responses to anom alous live disturbances. In: Proceedings of the 20th National Information System s Security Conference. National Institute of Standards and Technology, 1997

共引文献121

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部