期刊文献+

融合扫描技术的入侵检测系统研究与实现 被引量:1

Research and Implementation of Intrusion Detection System Merged Scanner Technique
下载PDF
导出
摘要 入侵检测(IDS)技术虽然已经经过了二十多年的发展,但总体上它的技术还不是很成熟,还有很多问题尚未得到很好的解决,例如:高误报率、漏报率以及检测速率低下已是目前IDS发展的瓶颈.本文针对这两个问题提出一种解决方案,即将扫描技术运用到IDS中来.充分利用扫描的结果,对IDS的规则库进行精简,提高匹配速率;对IDS发出的警报进行验证,降低漏报率和误报率. Although the intrusion detection technique has been developed about twenty years, the technique in the whole is not mature, and there are rate of false positives and negatives and IDS. This work proposes a new solution It dynamically compacts the rules bases results, so it can improve the matching many problems now that do not have the best solutions, such as: the high the low efficiency of detection have been the bottleneck of development of scheme for the problems, that is, applying the scanning technique to IDS. of IDS and validates the alarms of IDS by making full use of the scanning speed and bring down the rate of false negatives and positives.
作者 乔佩利 宋平
出处 《哈尔滨理工大学学报》 CAS 北大核心 2009年第1期55-59,共5页 Journal of Harbin University of Science and Technology
基金 国家社会公益研究专项(2005DIB2J218)
关键词 入侵检测 网络安全扫描 误报率 intrusion detection network security scanner the rate of false positives
  • 相关文献

参考文献4

二级参考文献5

  • 1[1]Dethy. Examining Port Scan Methods-Analysing Audible Techniques Wh itepaper.http://www.syn nergy.net/downloads/papers/portscan. txt,200 1
  • 2[2]Fyodor. The Art of Port Scanning. http://www.phrack.com/phrack/51/P51-11,1997
  • 3[3]Mateti P.Port Scanning.http://www.cs.wright.edu/~pmateti/IntemetSecurity/Lectures/Probing, 2002
  • 4[4]Afkin O.Networking Scanning.http://www.sys-security.com/html/papers.html, 1999
  • 5王灏,王换招.端口扫描与反扫描技术[J].微机发展,2001,11(5):60-63. 被引量:10

共引文献41

同被引文献9

引证文献1

二级引证文献2

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部