期刊文献+

基于规则的多模型集成化异常入侵检测系统

Multiple-Model Integrated Anomaly Intrusion Detection System Based on Rules
下载PDF
导出
摘要 在讨论相关技术的基础上,提出一种多模型集成的入侵检测系统,然后运用不同的模型和方法,构建系统的正常行为,并将其使用基于规则的方法集成,实验证明系统的检测率得到提高的同时,大大降低了误警率。 Proposes a multiple-model intrusion detection system on the basis of related technology. It constructs normal behavior of the system by using different models and methods. The models are integrated based on rule methods subsequently. In the end, the experiment proves that the detection rare of the system is improved and at the same time the false positive rate is reduced greatly.
出处 《现代计算机》 2008年第11期83-85,92,共4页 Modern Computer
关键词 入侵检测系统(IDS) 隐马尔可夫模型(HMM) 系统调用 神经网络 Intrusion Detection System(IDS) Hidden Markov Model(HMM) System Call Neural Networks
  • 相关文献

参考文献5

  • 1E.Biermann,E.Cloete,L.M.Venter. A Comparison of Intrusion Detection System[J]. Computer and Security,vol 20,no.8,pp. 676-683,December 2001.
  • 2L.R.Rabiner and B.H.Juang. An Introduction to Hidden Markov Models[J]. IEEE ASSP Magazine,pp.4-16,January 1986.
  • 3Fox K L,Henning R R,Reed J H,et al. A Neural Network Approach Toward Intrusion Detection[C]. In:Proceedings of the 10th National Computer Security Conference,1990,10.
  • 4CARLA T L, BROALEY. Detecting the Abnormal:Machine Learning in Computer Security [R]. Technical Report TRECE 97-1. Purdue University,West Lafayette,1997.
  • 5ACM SIGCOMM. The Internet Traffic Archive[EB/OL]. http: //ita.ee.lbl.gov.

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部