摘要
提出了一种分布式多Agent的入侵检测系统模型。采用计算检测统计值的检测方法,不仅实现了数据收集的分布化,而且将入侵检测和实时响应分布化。使用该模型的入侵检测系统不但能检测出已知的入侵手段,也能检测出未知的入侵手段。该系统具有很好的实时性和可扩充性。给出了该分布式多Agent入侵检测系统软件的实现。
A multi-agent distributed IDS model, enhanced with a method of computing statistical values, was presented. This model can accomplish distributed information collections, and distributed intrusive detections and real-time reactions. The IDS based on this model, which has advantages of real-time reactions and openings, can detect intrusions being behalf of both knowns and unknowns. Also the software frame of the IDS was introduced.
出处
《中国机械工程》
EI
CAS
CSCD
北大核心
2006年第1期45-48,共4页
China Mechanical Engineering
基金
国家自然科学基金资助重点项目(50335020)
高等学校博士学科点专项科研基金资助项目(20020497006)
关键词
网络化制造
分布式多AGENT
入侵检测系统
检测方法
networked manufacturing
distributed multi-agent
intrusive detection system (IDS)
detection method