基于自治代理的网络入侵检测系统的研究及其可扩展标签语言通信的实现  

Research of an Agent-based NIDS and it's XML communication realization

在线阅读下载全文

作  者:李涵[1] 

机构地区:[1]北京机械工业学院基础部,北京100085

出  处:《北京机械工业学院学报》2004年第4期35-39,共5页Journal of Beijing Institute of Machinery

摘  要:介绍了一种基于自治代理的网络入侵检测模型,它包括一个中心控制级代理检测模块,多个主机级代理检测模块和网络代理检测模块。各模块间通过代理协同工作以实时检测网络中的协同攻击。为了实现代理间的可靠、安全通信,利用XML作为信息交换的载体,实现代理间的数据交换。An Agent-based Network Intrusion Detection Model is introduced. It consists of the following components: a host manager (a monitoring process or collection of processes running in background) in each host; a network manager for monitoring each net in the system; and a central manager which is placed at a single secure location and receives reports from various hosts and net managers to process and correlate these reports, and to detect intrusions. By the cooperation of agents, the cooperative attack in the net can be detected.A data exchange method using XML (Extensible Markup Language) technology is also introduced to realize the secure communication between agents.

关 键 词:自治代理 网络入侵检测系统 可扩展 检测模块 网络代理 网络入侵检测模型 中心控制 语言通信 安全通信 信息交换 

分 类 号:TH137[机械工程—机械制造及自动化] TP393[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象