基于分布式Agent的入侵检测系统研究  

Research of intrusion detection system based on distributed agent

在线阅读下载全文

作  者:郑孝遥[1] 陆阳[1] 

机构地区:[1]合肥工业大学计算机与信息学院,安徽合肥230009

出  处:《计算机工程与设计》2005年第5期1241-1244,共4页Computer Engineering and Design

摘  要:随着网络入侵行为变得越来越普遍和复杂,传统的单一入侵检测系统已不能满足网络安全的发展需求,针对当前形势,为了提高计算机及网络系统的防御能力,提出了一种基于分布式Agent技术的入侵检测模型,并给出了一种可疑度算法和多IP地址连续报告策略,经测试和论证,系统可有效地阻止已知和未知的攻击行为,最后对系统的整体性能进行了详细描述。Network-based attacks have become common and sophisticated. For this reason, traditional intrusion detection system based on single layer can't meet the increasingly growing network security's requirement. Under the situation, in order to improve resistive ca- pability of computer and network system , a prototype— — intrusion detection system is presented based on distributed agent, and then a doubt value algorithm and a multi-IP address sequential report policy are proposed. After testing and demonstrating, this system can prevent known and unknown attacks effectively. Finally, the whole capability of this system is particularly introduced.

关 键 词:入侵检测 分布式代理 网络安全 协作 AGENT 

分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象