摘要
探讨基于孤立点挖掘的异常检测的可行性,将基于2k-距离的孤立点挖掘方法应用到入侵检测中,并针对该方法无法很好地处理符号型属性数据的问题,采用编码映射方法对符号型数据进行处理,同时利用主成分分析来实现对编码映射后扩展的属性进行降维。详细阐述了具体实现方案,并通过仿真实验验证了该方法的可行性。
The feasibility of the anomaly detection based on the outlier mining is discussed.The anomaly detection method is presented.The outlier detection method based on similar coefficient sum is applied to the intrusion detection.In order to overcome the poor ability of outlier detection techniques,the code mapping method is adopted to process sign type data.The dimension reduction of the mixed attribute expanded after code mapping was realized by the principal components analysis(PCA).The feasibility of the method was verified with a simulation experiment.
出处
《现代电子技术》
2010年第11期114-116,120,共4页
Modern Electronics Technique
关键词
入侵检测
孤立点
2k-距离
编码映射
主成分分析
intrusion detection
outlier detection
2k-distance
code mapping
principal component analysis