期刊文献+

基于Agent的分布式入侵检测系统 被引量:5

Distributed Intrusion Detection System Based on Agent
下载PDF
导出
摘要 针对现有入侵检测系统存在的问题,论文提出了一个基于Agent的分布式入侵检测系统模型,该系统模型结合目前几种主要的入侵检测技术和数据挖掘技术,实现了入侵检测和实时响应的分布化,同时增强了入侵检测系统的灵活性、可伸缩性、鲁棒性、安全性以及入侵检测的全面性。文末给出了根据该系统模型实现的入侵检测系统的实验测试结果,证明了该系统对入侵检测的有效性和合理性。 In this paper,a distributed model of intrusion detection system based on intelligent Agent is provided to solve intrusion detection problems in present intrusion detection systems.In this system the main detection methods and data mining technology are used to realize the distribution of intrusion detection and real-time response,and improve the system's flexibility,expansibility,robustness,security and the detection maturity.At last,it proves the validity and rationality of the distributed intrusion detection system based on Agent with an experiment.
出处 《计算机工程与应用》 CSCD 北大核心 2004年第35期160-162,169,共4页 Computer Engineering and Applications
关键词 分布式入侵检测 入侵检测系统 AGENT 数据挖掘 intrusion detection,intrusion detection systems ,Agent ,data mining
  • 相关文献

参考文献7

二级参考文献22

  • 1蒋建春 马恒太 等.网络安全入侵检测:研究综述[M].中科院信息安全技术工程研究中心,-..
  • 21,Bishop M. A model of security monitoring. In: Proceedings of the 5th Annual Computer Security Applications Conference. 1989. 46~52. http://seclab.cs. ucdavis.edu/papers.html
  • 32,Staniford-Chen S, Cheung S, Crawford R et al. GrIDS: a graph based intru sion detection system for large networks. In: Proceedings of the 19th National Information Systems Security Conference, Vol 1. National Institute of Standards a nd Technology, 1996. 361~370
  • 43,Hochberg J, Jackson K, Stallings C et al. NADIR: an automated system for detecting network intrusion and misuse. Computers and Security, 1993,12(3):235~2 48
  • 54,White G B, Fisch E A, Pooch U W. Cooperating security managers: a peer-based intrusion detection system. IEEE Network, 1996,10(1):20~23
  • 65,Forrest S, Hofmeyr S A, Somayaji A. Computer immunology. Communications of th e ACM, 1997,40(10):88~96
  • 76,Hunteman W. Automated information system alarm system. In: Proceedings of the 20th National Information Systems Security Conference. National Institute of Standards and Technology, 1997
  • 87,Porras P A, Neumann P G. EMERALD: event monitoring enabling responses to anom alous live disturbances. In: Proceedings of the 20th National Information System s Security Conference. National Institute of Standards and Technology, 1997
  • 9.[EB/OL].http ://tech.sina.com.cn,2002-06.
  • 10White GB, Fisch EA, Pooch UW.Cooperating security managers : a peer-based intrusion detection system[J].IEEE Network, 1996; 10(1) : 20-23.

共引文献173

同被引文献22

引证文献5

二级引证文献16

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部