摘要
入侵检测作为主动的安全防御技术,是计算机网络中继防火墙之后的第二道安全防线,是近年来网络安全领域的研究热点.研究了基于数据挖掘的网络入侵检测系统的建模及实现,建立融合简单规则、协议分析、数据挖掘分析为一体的模型,其中着重讨论了基于数据挖掘技术的网络入侵检测系统的实现方法.
Intrusion detection, as an active security defending technique, is the second guard for computer network, following network firewall, which is a hot research topic in network security field nowadays. Network intrusion detection system model and realization based on data mining is emphasized in this paper, one model with simple rules and protocol analysis and data mining analysis is proposed, and the realization method of intrusion detection system based on data mining is specially discussed.
出处
《安徽工程科技学院学报(自然科学版)》
CAS
2006年第3期36-38,共3页
Journal of Anhui University of Technology and Science
关键词
入侵检测
异常检测
误用检测
数据挖掘
分类
关联规则
intrusion detection
anomaly detection
misuse detection
data mining
classification
association rule