期刊文献+

混合二次网络流量异常状态模型研究 被引量:1

Research on Mixed Quadratic Network Traffic Abnormal States Model
下载PDF
导出
摘要 提出了一种网络流量异常状态统计模型——混合二次网络状态模型MQNSM-G(DKS,DKKS,DAKS)。该模型从动态性原则以及降低误检率和漏检率思想出发,改进原有统计模型,建立了可以动态设定描述网络流量状态参数的加权统计模型。基于混合二次网络状态模型MQNSM-G(DKS,DKKS,DAKS)的入侵检测系统进一步证明了该模型可以更大程度上提高异常检测性能,降低其误检率和漏检率。 A statistical raodel for detecting abnormal network traffic - mixed quadratic network states model MQNSM- G( DKS, DKKS, DAKS )is presented. Based on principles of developments and reducing FNP and FPP, this paper builds up a statistical model with wrights that can dynamically .set parameters of network traffic states, which improves on former statistical models. It has proved that performances of anomaly detection can be improved to a great degree and the FPP and FNP can be cut down prominently in an IDS based on the mixed quadratic network states model MQNSM - G( DKS, DKKS, DAKS).
出处 《计算机技术与发展》 2007年第3期153-155,共3页 Computer Technology and Development
基金 国家自然科学基金(60573141) 华为基金资助
关键词 分布式拒绝服务攻击 入侵检测 误检率 漏检率 dlstributed denial of service intrusion detection false positive probability false negative probability
  • 相关文献

参考文献9

  • 1Keromytis A D,Misra V,Rubenstein D.SOS:secure overlay services[C]∥Proceedings of the 2002 conference on Applications,technologies,architectures,and protocols for computer communications,ACM SIGCOMM Computer Communication Review.[s.1.]:[s.n.],2002:61-72.
  • 2Yin Qingbo,Shen Liran,Zhang Rubo,et al.A New Intrusion Detection Method Based on Behavioral Model[C]∥Intelligent Control and Automation,2004 IEEE,WCICA 2004.Fifth World Congress.[s.l.]:[s.n.],2004:4370-4374.
  • 3张凤斌,杨永田,江子扬.遗传算法在基于网络异常的入侵检测中的应用[J].电子学报,2004,32(5):875-877. 被引量:30
  • 4李德全,徐一丁,苏璞睿,冯登国.IP追踪中的自适应包标记[J].电子学报,2004,32(8):1334-1337. 被引量:33
  • 5卿斯汉,蒋建春,马恒太,文伟平,刘雪飞.入侵检测技术研究综述[J].通信学报,2004,25(7):19-29. 被引量:232
  • 6Bai Y,Kobayashi H.Intrusion Detection Systems:technology and development[C]∥Advanced Information Networking and Applications,2003 IEEE.AINA 2003.17th International Conference on,Xi'an,CHINA:[s.n.],2003:710-715.
  • 7Li Jun,Manikopoulos C.Early statistical anomaly intrusion detection of DOS attacks using MIB traffic parameters[C]∥Information Assurance Workshop,2003.[s.l.]:IEEE Systems,Man and Cybernetics Society,2003:53-59.
  • 8邹柏贤.一种网络异常实时检测方法[J].计算机学报,2003,26(8):940-947. 被引量:43
  • 9Zhang Zheng,Manikopoulos C N.Detecting denial-of-service attacks through feature cross-correlation[C]∥Advances in Wired and Wireless Communication,2004 IEEE/Sarnoff Symposium on.[s.1.]:[s.n.],2004:67-70.

二级参考文献73

  • 1Throttan M, Ji C. Adaptive thresholding for proactive network problem detection. In: IEEE International Workshop on Systems Management, Newport, Rhode Island, 1998. 108-116.
  • 2Maxion R A. Anomaly detection for diagnosis. In: Proceedings of the 20th International Symposium Fault-Tolerant Computing(FTCS-20), 1990. 20-27.
  • 3Maxion R A, Feather F E. A case study of Ethernet anomalies in a distributed computing environment. IEEE Transactions on Reliability, 1990, 39(4): 433-443.
  • 4Lawrence Ho L, Cavuto D J, Papavassiliou S, Zawadzki A G.Adaptive and automated detection of service anomalies in trans-action-oriented WAN's: Network analysis, algorithms, implementation, and deployment. IEEE Journal of Selected Areas in Communications, 2000, 18(5): 744-757.
  • 5Hood C S, Ji C. Beyond thresholds: An alternative method for extracting information from network measures. In: Proceedings of IEEE Globecom Conference, Phoenix, Arizona, 1997.487-491.
  • 6Ward A, Glynn P, Kathy Richardson. Internet service performance failure detection. Performance Evaluation, 1998, 26(3) : 38-44.
  • 7Alarcon-Aquio V, Barria J A. Anomaly detection in communication networks using wavelet. IEE Proceeding-Communication, 2001, 148(6): 355-362.
  • 8Huang P, Feldmann A, Willinger W. A non-intrusive, wavelet-based approach to detecting network performance problems.In: Proceedings of ACM SIGCOMM Internet Measurement Workshop, San Francisco Bay Area, 2001.
  • 9Mehdi Nassehi. Anomaly detection for Markov models. IBM Research Division, Zurich Research Laboratory, Ruschlikon,Switzerland: Research Report RZ 3011 ( # 93057), 1998.
  • 10Dixon W J, Massey F J. Introduction to Statistical Analysis.3rd Edition. New York, NY: McGraw-Hill Book Company,1983.

共引文献328

同被引文献11

引证文献1

二级引证文献3

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部