期刊文献+

入侵检测的规划识别模型研究 被引量:6

The model of plan recognition for intrusion detection
下载PDF
导出
摘要 将AI领域中的规划概念引入入侵检测 ,建立了入侵检测的规划识别模型 ,采用因果告警关联分析和贝叶斯网推理模型实现规划识别 ,以找回因入侵检测自身的检测策略不足和网络覆盖范围漏洞而丢失的关键告警 ,重新构建了实际的攻击场景 ,并能预测攻击者的下一步行为或攻击意图 。 The notion 'plan' in AI (Artificial Intelligence) was introduced to intrusion detection. The model of plan recognition for intrusion detection by using alert correlation analysis was built based on prerequisites and consequences of intrusions and Bayesian Network inference model. As a result, missed key alerts caused by weaknesses in IDS detection policies and holes in IDS network coverage were gotten back, real attack scenarios were reconstructed, future action or intrusion intention was predicted ,and appropriate responses to their actions were planned.
出处 《华中科技大学学报(自然科学版)》 EI CAS CSCD 北大核心 2004年第3期80-82,共3页 Journal of Huazhong University of Science and Technology(Natural Science Edition)
基金 国家信息安全应急计划资助项目 (86 3 30 1 0 6 0 1) 国信安办资助项目 (2 0 0 1 研 1 0 0 4 ) 武汉市科技计划基金资助项目 (2 0 0 10 1111) .
关键词 入侵检测 规划 规划识别 虚拟告警 贝叶斯网 intrusion detection plan plan recognition virtual alert Bayesian Network
  • 相关文献

参考文献2

二级参考文献9

  • 1吴霁.态势评估关键技术的研究[M].西安:西安电子科技大学,1995..
  • 2Henry,A.,Kautz,A.Formal theory of plan recognition [Ph.D.Thesis].Rochester: University of Rochester,1987.
  • 3Charniak,E.,Goldman,R.P.A Bayesian model of plan recognition.Artificial Intelligence,1993,64(1):53~79.
  • 4Schmidt,C.F.,Sridharan,N.S.,Goodson,J.L.The plan recognition problem: an intersection of psychology and artificial intelligence.Artificial Intelligence,1978,11(1):45~83.
  • 5Litman,D.,Allen,J.A plan recognition model for subdialogues in conversation.Cognitive Science,1987,11(1):163~200.
  • 6Karen,H.,Victor,L.Knowledge-Based command understanding: an example for the software development environment.Technical Report TR 82-6,Department of Computer and Information Science,University of Massachusetts,Amherst,1982.
  • 7Vilain,M.Getting serious about parsing plans: a grammatical analysis of plan recognition.In: Proceedings of the 8th National Conference on Artificial Intelligence.Boston: AAAI Press,1990.190~197.
  • 8Poole,D.Probabilistic horn abduction and Bayesian networks.Artificial Intelligence,1993,64(2):81~129.
  • 9Allen,J.F.,Koomen,J.A.Planning using a temporal world model.In: Amareleds,S.,ed.Proceedings of the IJCAI-83.Karlsruhe: Morgan Kanfmann Publishers,Inc.,1983.741~747.

共引文献38

同被引文献42

引证文献6

二级引证文献5

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部