摘要
入侵检测系统是一种主动保护网络资源免受黑客攻击的安全技术.它不仅帮助系统对付外来网络攻击,还可以查知内部合法用户的非法操作,扩展了系统管理员的安全管理能力.入侵检测为系统提供实时保护,被认为是防火墙之后的第二道安全闸门.文章讲述了入侵检测技术,并提出了一种基于数据挖掘技术的入侵检测模型。
Intrusion detection system (IDS) is an active security technology which can prevent the network resources from being attacked by hackers. It can not only cope with external attacks but also detect the misuse of thc legitimate users. IDS extends the security administrator's ability .IDS offers real-time protection to system and is considered as the second line of defence behind firewall. In this paper we introduce technology of IDS and offer a datamining-based IDS model which can detect the known and unknown intrusion activities.
出处
《广西民族学院学报(自然科学版)》
CAS
2002年第4期51-53,56,共4页
Journal of Guangxi University For Nationalities(Natural Science Edition)
关键词
入侵检测系统
数据挖掘
计算机信息安全
Intrusion detection system , Data mining ,Computer information security