期刊文献+

串匹配型入侵检测系统的改进

Improvement of content-based intrusion detection system
下载PDF
导出
摘要 针对当前串匹配型入侵检测系统普遍面临的误报率漏报率高、自身的性能难以适应快速增长的网络流量需求等问题,本文以提高检测的速度和准确率为目的对串匹配型入侵检测系统进行分析,从串匹配算法、规则库结构等方面对其进行改进,并提出了具体的方案。 Current based-contentintrusion detection systems (IDS) are confronted with some problems. Inaddition to highfalse positive ratio and high false negative ratio, its own performance is difficult to adapt to the need of increasing network traffic. To improve the speed and accuracy of the detection, this paper analyzes the content-based IDS firstly, and secondly presents the im- proving schemes from string matching algorithms and the structure of signature library.
出处 《燕山大学学报》 CAS 2005年第4期301-304,共4页 Journal of Yanshan University
关键词 串匹配 入侵检测系统 规则库 string matching intrusion detection system signature library
  • 相关文献

参考文献2

  • 1M Fisky, G Varghese. Fast Content-based Packet Handling for Intrusion Detection [R]. UCSD Technical Report CS2001-0670,2001.
  • 2M Fisky, G Varghese. An analysis of fast string matching applied to content-based forwarding and intrusion detection [R]. UCSD Technical Report CS2001-0670 (updated version), 2002.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部