期刊文献+

基于粗糙集理论的入侵检测方法研究 被引量:13

Research of Intrusion Detection Method Based on Rough Set
下载PDF
导出
摘要 为了克服入侵检测系统存在着在先验知识较少情况的推广能力差的问题,提出了基于粗糙集理论的入侵检测方法。利用粗糙理论,建立了系统调用短序列的检测模型并应用于sendmail调用序列检测。实验结果表明:它不需要全部的正常和异常的信息,在给出较少的正常和异常调用序列数据的情况下,能得到较为理想的检测效果。 An intrusion detection method based on rough set is proposed in order to overcome poor generalizing ability of current intrusion detection system in the case of less prior knowledge. According to rough set a detection model is built based on short call sequence and used to detec call sequences of sendmail program.The experimental proves that better detecting result can be obtained while less normal and abnormal information is needed.
作者 彭宏
出处 《电子科技大学学报》 EI CAS CSCD 北大核心 2006年第1期108-110,136,共4页 Journal of University of Electronic Science and Technology of China
关键词 粗糙集 入侵检测 网络安全 系统调用序列 rough set intrusion detection network security system call sequence
  • 相关文献

参考文献4

  • 1Forrest S,Perrelason A S,Allen L,et al.Self_nonself discrimination in a computer[C].In:Rushby J,Meadows C,eds.Proceedings of the 1994 IEEE Symposium on Research in Security and Privacy.Oakland,CA:IEEE Computer Society Press,1994:202-212. 被引量:1
  • 2Ghosh A K,Michael C,Schatz M.A real-time intrusion system based on learning program behavior[A].In:Debar H,Wu SF.Recent advances in intrusion detection (RAID 2000)[C].Toulouse:Spinger-Verlag,2000.93-109. 被引量:1
  • 3Lee W,Stolfo S J.A data mining framework for building intrusion detection model[C].In:Proceedings of the 1999 IEEE Symposium on Security and Privacy.Oakland,CA:IEEE Computer Society Press,1999:120-132. 被引量:1
  • 4刘清.Rough集及Rough推理[M].北京:科学出版社,2001.. 被引量:360

共引文献359

同被引文献74

引证文献13

二级引证文献55

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部