摘要
提出了一种改进的基于二级决策内核的NIDS系统结构,设计了相应的报警优化过滤算法,并重点讨论了系统设计和实现中的核心问题和关键技术。实验结果表明,该工作在不影响IDS报警实时性的同时,减少了误报和滥报现象,提高了报警的准确性和合理性。
An architecture based on the second-level decision kernel is introduced and an optimized alert-filtering algorithm is designed accordingly. The key problem and technology in the system design and implementation are discussed. The experiment result shows that this work decreases the occurrence of false positives and abusive alert with little effect on the real-time of alert, and the veracity and rationality of alert are improved.
出处
《计算机工程》
EI
CAS
CSCD
北大核心
2005年第4期79-81,174,共4页
Computer Engineering
基金
国家"863"计划基金资助项目(2003AA144150)