摘要
针对现有分布式入侵检测系统中的安全和信任问题,引入节点间信任度量机制。系统中所有协同节点初始信任值均为1,根据节点的状态和行为信息,信任值将动态增大或者减小。通过比较信任值来去除或者减小恶意节点的有害信息影响,从而减少系统的错报和误报。典型案例分析发现,引入信任度量机制的分布式入侵检测系统能有效提高检测的准备度,增强检测能力。
A novel honesty-rate measuring based approach is proposed to improve the security and trust of distributed intrusion detection systems.All the cooperative nodes join the system with an initial value of 1 for an honesty rate.The honesty rate of a node dynamically increases or decreases depending on its status and behavior.The proposed approach compares the honesty rate of each node to eliminate or reduce the impact of harmful information from malicious nodes,and then reduces the false positives and false negatives of the intrusion systems.Experiments and analyses of a representative case confirm that the ability of the proposed approach improves detection accuracy and detection capability.
出处
《山东大学学报(理学版)》
CAS
CSCD
北大核心
2011年第9期77-80,共4页
Journal of Shandong University(Natural Science)
基金
国家863重点基金项目(2008AA01Z407)
湖南省自然科学基金项目(07JJ5084)
广东省科技计划项目资助(2009B080701031)