期刊文献+

一种新的多峰值进化异常入侵检测方法

Novel Multimodal Evolution Based Anomaly Intrusion Detection Approach
下载PDF
导出
摘要 提出一种基于免疫的多峰值进化异常入侵检测方法.self空间表示为一系列超球体,为提高self和non-self之间界线划分的精确度,还引入了可变半径self球体模型,训练检测器时计入self数据点分布特性的影响.改进的多峰值遗传算法使检测器尽量填充self附近以及self超球体之间难以检测的细小区域.实验显示系统获得较好结果,并且可变半径self球体模型在DARPA99网络数据集上提高检测率的同时降低了误报率,该数据集符合模型的假设. The paper presents an artificial immunity based multimodal evolution approach for anomaly intrusion detection. Self space is described by a series of hyper-spheres, and a variable radius self sphere model is developed to locate the boundary between self and non-self more accurately, it takes the distribution characteristics of training set into account while generating detectors. The modified multimodal genetic algorithm guides the detectors evolving towards those blind small areas close to self set or among self spheres. Experiments indicated the proposed system got good results. Moreover, the variable radius self sphere model produced lower false alarm rate while provided higher detection rate on DARPA99 network data set, so this data set followed the hypothesis of that model.
出处 《小型微型计算机系统》 CSCD 北大核心 2008年第6期1122-1125,共4页 Journal of Chinese Computer Systems
关键词 人工免疫系统 入侵检测 多峰值进化 可变半径Self球体模型 artificial immune systems,intrusion detection,multimodal evolution,variable radius self sphere model
  • 相关文献

参考文献10

  • 1Hou H,Dozier G.Comparing the performance of binary-coded detector and constraint-based detector[A].Proceedings of the Congress of Evolutionary Computation[C].Portland,Oregon,USA,2004.Piscataway,New Jersey:IEEE Press,2004,772-777.
  • 2Dasgupta D,Gonzalez F.An immunity-based technique to characterize intrusions in computer networks[J].IEEE Transactions on Evolutionary Computation,2002,6(3):281-291.
  • 3Gomez J,Gonzalez F,Kaniganti M,et al.An evolutionary approach to generate fuzzy anomaly (attack) signatures[A].Proceedings of the Fourth Annual IEEE Information Assurance Workshop[C].West point,NY,2003.Piscataway,New Jersey:IEEE Press,2003,251-259.
  • 4Zhao Jun-zhong,Huang Hou-kuan.An evolving intrusion detection system based on natural immune system[A].Proceedings IEEE Region 10 Conference on Computers,Communications,Control and Power Engineering[C].Beijing,China,2002.Beijing:Institute of Electrical and Electronics Engineers,Inc.,2002,129-132.
  • 5Zhou Ji.Dipankar dasgupta augmented negative selection algorithm with variable-coverage detectors[A].Proceedings of the Congress of Evolutionary Computation[C].Portland,Oregon,USA,2004.Piscataway,New Jersey:IEEE Press,2004,1081-1088.
  • 6翁广安,余胜生,周敬利.Multimodal Evolution Approach to Multidimensional Intrusion Detection[J].Journal of Southwest Jiaotong University(English Edition),2006,14(3):212-217. 被引量:1
  • 7Dasgupta D,Gonzalez F.Evolving complex fuzzy classifier rules using a linear tree genetic algorithm[A].Proceedings of the Genetic and Evolutionary Computation Conference[C].San Francisco,2001.San Francisco,CA:Morgan Kaufmann Publishers,2001,299-305.
  • 8Mahfoud S W.Crowding and Preselection revisited[A].Manner R,Manderick B,eds.,Parallel Problem Solving from Nature-II[C].Amsterdam,Netherlands:Elsevier Science,1992,27-36.
  • 9Hettich S,Blake C L,Merz C J.UCI Repository of machine learning databases[EB/OL].http://www.ics.uci.edu/~mlearn/MLRepository.html.Irvine,CA:University of California,Department of Information and Computer Science.2005-3-10.
  • 10Lincoln Laboratory of Massachusetts Institute of Technology.DARPA 99 intrusion detection data set[EB/OL].http://www.ll.mit.edu/IST/ideval/data/1999/1999-data-index.html.2005-3-22.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部