摘要
在比较了生物免疫系统和入侵检测系统的相似性后,在入侵检测系统中引入了免疫相关机理,建立了一种基于免疫机理的入侵检测系统模型,并对系统模型中涉及的关键技术进行了详细阐述。在模型检测器的生成规则中首次提出并运用了n-r规则,在检测器的生成算法中将克隆选择、否定选择和思维进化相结合,提出了一种全新的算法。理论分析表明该系统模型能有效检测已知和未知的攻击活动,也为解决入侵检测系统的高误报率和缺乏自适应性的难题提供了思路。
After comparing Biological Immune System (BIS) with Intrusion Detection System (IDS), this paper built a new model for IDS based on immune mechanism. It discussed the key technology about this system in detail. This paper proposed n-r matching rule which was applied to detector's building at the first time. Duing the detector producting, a novel algorithm was also presented, involving clonal selection, negative selection and mind evolution. The theoretical analysis shows the model is efficient in detetecing known and unknown intrusion. It provides a favourable approach to reduce false positive errors and to approve self-adaptability, too.
出处
《太原理工大学学报》
CAS
北大核心
2006年第5期501-504,共4页
Journal of Taiyuan University of Technology
基金
山西省回国留学人员基金项目(2004-18)
关键词
人工免疫系统
入侵检测系统
克隆选择
否定选择
思维进化
artificial immune system
intrusion detection system
clonal selection
negative selection
mind evolution