摘要
基于Snort设计一个分布式协作入侵检测系统。将感性信任理论和反馈思想相结合,减小系统误判断的几率,提升系统的自适应能力。给出协作节点间的数据传输协议、基于感性信任的协作机制及信任度更新算法。通过模拟攻击对系统进行测试,结果证明,节点间可以实现对等协作,有效避免协作过程中误判断的发生。
Based on Snort,this paper presents a Distributed Cooperative Intrusion Detection System(DCIDS).Through introducing subjective trust theory and feedback theory into cooperative detection,the system reduces the probability of misjudge,and improves self-adapting capability.It introduces transmission protocol between nodes,and proposes the cooperative scheme and the trust level update algorithms.The system is tested by simulated intrusion,and result shows that it completes the cooperative detection,and reduces the probability of misjudge properly.
出处
《计算机工程》
CAS
CSCD
北大核心
2010年第19期165-167,共3页
Computer Engineering
基金
上海市自然科学基金资助项目(08ZR1400400)
上海市教育发展基金会晨光计划基金资助项目(2007CG42)
关键词
入侵检测系统
分布式
协作
感性信任
Intrusion Detection System(IDS)
distributed
cooperative
subjective trust