摘要
IDS(入侵 测系统)是一种 测网络入侵行为的工具。然而现在的IDS在提取用户行为特征的时候不能很好的反映出真实的情况,经常出现漏报或误报的情况。作者详细讨论了利用数据挖掘技术提职用户行为特征的方法,提出了采用数据挖掘技术的入侵,测系统的结构模型。
IDS (Intrusion Detection System) is a tool which is used to detect the intrusions to network systems. However, the extracted characteristic of the current IDS often can't reflect the real situation well, so the mistakes and omissions of alarm often emerge. To solve this question, the application of (he DM(Data Mining) technology to extract the user's characteristic in IDS is discussed, and the structure, of the IDS with the application of DM technology is presented in this paper.
出处
《铁路计算机应用》
2001年第1期4-6,共3页
Railway Computer Application