期刊文献+

改善入侵检测系统检测精度的研究

Research on Improving Detection Accuracy of IDS
下载PDF
导出
摘要 通过采集主机中三个不同层次的特征数据,利用SOM-PAK,训练出三个表示系统正常模式的MAP,并确定报警阈值的选取方法.在对运行入侵工具NMAP和HYDRA时的检测中,通过连续检测多组数据,显著提高了系统检测率. This paper uses SOM _ PAK to train three normal MAP of system on characteristic datas of different layer and decides the method of choosing alert threshold. When decting system abnormity by intrusion tools NMAP and HYDRA, the system indicates that the accuracy of detecting the intrusion is greatly improved by means of detecting multiple data continuously.
出处 《南开大学学报(自然科学版)》 CAS CSCD 北大核心 2006年第3期104-109,共6页 Acta Scientiarum Naturalium Universitatis Nankaiensis
基金 国家自然科学基金(66272011)
关键词 检测精度 入侵检测系统 检测率 自组织映射 detection accuracy IDS detection rate SOM
  • 相关文献

参考文献7

  • 1Kohonen T,Oja E,Simula O,Visa A.Engineering applications of the self-organizing map[J].Proceedings of the IEEE,1996,84(10):1380-1384.
  • 2Simula O,Alhoniemi E,Hollmen J,Vesanto J.Monitoring and modeling of complex processes using hierarchical self-organizing maps[J].Proceedings of the IEEE International Symposium on Circuits and Systems (ISCAS'96),1996:73-76.
  • 3Lane T,Brodley C E.Sequence matching and learning in anomaly detection for computer security[J].Proceedings of the AAAI-97 Workshop on AI approaches to Fraud Detection and Risk Management,1997:43-49.
  • 4Rhodes B C,Mahaffey J A,Cannady J D.Multiple self-organizing maps for intrusion detection:Proceedings of the 23rd National Information Systems Security Conference[C].USA:MD,2000.
  • 5Savareis S,Boley D L,Bittanti S,Gazzaniga G.Cluster selection in divisive clustering algorithms:Proceedings of the 2nd SIAM Int'l Conference on Data Mining[C].Italy:Padova,2002.
  • 6Kohonen T,Hynninen J,Kangas J,Laaksonen J.SOM _ PAK,the Self-Organizing Map Program Package[M].Finland:Espon,1995.
  • 7Wang Huaibin.SVM Classifer Incorporating selection using GA for spam detection:International Conference EUC-2005[C].Japan:Springer-Verlag,2005:1147-1154.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部