摘要
通过分析Snort入侵检测系统的体系结构,针对Snort入侵检测系统的缺陷,提出一个基于数据挖掘的Snort混合检测模型,该模型将多种检测方法结合起来,提高了系统检测的准确性和完备性。系统采用分布式模式在局域网中部署。
Through analyse the structure of intrusion detection system, a Snort intergrated model based on data mining is put forward to solve the limitations of the Snort. This model used several individual detection techniques to raise the accuracy and complete of system detection. Distribute mode is adopted in the LAN.
出处
《计算机与数字工程》
2008年第8期113-116,共4页
Computer & Digital Engineering
基金
浙江省教育科学规划项目(编号:2006SC168)资助
关键词
数据挖掘
SNORT
入侵检测
聚类
关联
data mining, Snort, intrusion detection, clustering, association