期刊文献+

网络协议分析与决策树挖掘的入侵检测模型研究 被引量:4

ON INTRUSION DETECTION MODEL BASED ON NETWORK PROTOCOL ANALYSIS AND DECISION TREE MINING
下载PDF
导出
摘要 在入侵检测系统中,采用网络协议分析技术可以有效地减少数据包的搜索空间。结合网络协议分析技术和决策树挖掘技术,提出一种新型的入侵检测模型。该模型首先分析数据包的协议类型,然后根据协议类型来确定最佳的决策树算法以进行入侵检测。实证研究表明,该模型较传统的基于决策树的入侵检测模型具有更高的准确性,更适合于目前高速网络环境中的入侵检测要求。 Network protocol analysis can be used to effectively reduce searching space of data packet in intrusion detection system. This paper purposes a novel intrusion detection model based on the techniques of network protocol analysis and decision tree mining. The model first analyses the protocol types to which the data packet belongs, and then determines the optimal decision tree algorithm according to the protocol type for conducting the intrusion detection. Study on actual demonstration indicates that, this model outperforms the conventional decision tree-based intrusion detection model with higher accuracy, and is more suitable to the requirements of intrusion detection in current high network environment.
出处 《计算机应用与软件》 CSCD 2010年第2期19-21,55,共4页 Computer Applications and Software
基金 国家自然科学基金(60973107) 北京市教委科技发展面上项目(KM200910772016) 北京市属市管高校人才强教计划项目(PXM2008-014224-055928)
关键词 入侵检测模型 SKETCH 协议分析 决策树 Intrusion detection model Sketch Protocol analysis Decision tree
  • 相关文献

参考文献13

  • 1Fielding R, Uc Irvine, J Gettys, et al. RFC2616 - Hypertext Transfer Protocol--HTTP/1.1 [ S]. 2006.
  • 2Han Jianwei, Kamber M. Data mining concepts and techniques [ M ]. Beijing: China Machine Press,2000 : 188 - 194.
  • 3Gilbert A C, Guha S, Indyk P, et al. Quicksand:Quick summary and analysis of network data [ R ]. Technical Report 2001 - 43, DIMACS Technical Report, November 2001.
  • 4Datar M S. Muthukrishnan. Estimating rarity and similarity over data stream windows [ R ]. Technical Report 2001 - 21, DIMACS Technical Report, November 2001.
  • 5Krishnamurthy B, Sen S, Zhang Y, et al. Sketch-based change detection : Methods, evaluation, and applications [ C ]//Proc. of ACM SIGCOMM IMC (2003).
  • 6Leo Breiman, Jerome Friedman, Charles J Stone, et al. Classification and regression trees[ M ]. Wadsworth and Brooks/Cole, Montery, 1984.
  • 7Kass G. An exploratory technique for investigating large quantities of categorical data[ J ]. Applied Statistics, 1980 (29) : 119 - 127.
  • 8Michael J A Berry, Gordon Linoff. Data mining technique:For marketing, sales and customer support[ M]. Wiley, New York. 2003.
  • 9David Biggs, Barry De Ville, Ed Suen. A method of choosing muhiway partitions for classification and decision trees [ J ]. Journal of Applied Statistics, 1991 ( 18 ) :49 - 62.
  • 10Goodman L A. Simple models for the analysis of association in crossclassifications having ordered categories. Journal of the American Statistical Association, 1979:537 - 552.

同被引文献29

引证文献4

二级引证文献41

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部