摘要
为解决网络安全检测中防火墙技术的不足、变被动检测为主动防御等问题,在对入侵检测和数据挖掘技术分析的基础上,提出了一个基于数据挖掘的入侵检测系统,介绍了入侵检测系统的实施过程,并着重对入侵检测系统进行了实例分析。实验证明,该系统可以有效地检测新的攻击类型,实现知识库的自动更新,从而提高了入侵检测的效率和准确率,增强了网络系统的安全。
To solve the problems of the shortage of firewall technique and changing the passive detection into the active defense, and based on the analysis on the intrusion detection and the data mining technique, this paper put forward an IDS based on the data mining technique, introduces the course of operating the IDS, and emphatically makes the example analysis of the IDS. And the test shows that this system can detect the new intrusion types effectively,realize the update of repository automatically,increase the efficiency and accuracy of the intrusion detection, and enhance the security of network system.
出处
《科技情报开发与经济》
2005年第13期244-246,共3页
Sci-Tech Information Development & Economy
关键词
数据挖掘
入侵检测
网络安全
信息保护
data mining
intrusion detection
network security
information protection