摘要
基于免疫学的入侵检测技术是利用生物免疫系统的原理、规则和运行机制实现对入侵行为的检测。目前大多数入侵检测系统的核心算法采取简单的匹配技术,只能检测出已知攻击并且误报漏报率较高。本文在深入分析免疫算法基础上,提出一种基于海明距离多重否定选择算法的异常检测方法,该算法通过多次过滤生成检测器,在提高入侵检测效率的同时减少黑洞的产生。
Immune - based intrusion detection technology is based on the theory of biology Immune system. At present, most intrusion detection systems adopt the simple template match technique, which can only detect simple attacks, and have high misinformation. This paper analyses immune algorithm deeply, and put forwards a multi - level negative selection algorithm based on Hamming distance, which can improve detection efficiency and reduce black holes by using multi -filtering to generate detector.
出处
《微计算机应用》
2009年第5期5-11,共7页
Microcomputer Applications
基金
广东省工业科技攻关计划项目(2006B80407001)
关键词
免疫系统
否定选择算法
检测器
异常检测
immune system, negative selection algorithm, detector, abnormal detection