摘要
通过网络流量信息进行网络入侵检测可以在入侵者未察觉的情况下,检测可能的入侵行为,再搭配其他网络设备对可疑入侵进行阻断,可以保护用户或伺服主机的安全。危险理论作为入侵检测系统架构的核心技术,来提高网络入侵检测的性能。文中分析了基于网络入侵检测的理论基础,以及危险理论在网络入侵检测系统中的应用。
Using the flow of information through the network to realize the network intrusion detection intruder with the unaware of the circumstances, can detect possible intrusions, and then with other network devices to block suspicious invasion to protect the safety of users or servo host. The danger theory is a new approach of the newly developed artificial immune system; it can be used as intrusion detection system architecture of the core technology to improve the performance of network intrusion detection. This paper analyzes the theoretical basis of network-based intrusion detection, and dangerous theory in network intrusion detection system, and pointed out the feasibility.
出处
《煤炭技术》
CAS
北大核心
2012年第12期197-198,共2页
Coal Technology
关键词
网络入侵检测
人工免疫
危险理论
network intrusion detection
artificial immune
danger theory