检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]武汉科技大学计算机科学与技术学院,武汉430065
出 处:《计算机工程与应用》2008年第14期113-117,共5页Computer Engineering and Applications
基 金:湖北省教育厅重点科研项目基金(No.2004D006)
摘 要:为了克服传统的"自我—非我"模型的不足,设计了一种新的基于危险理论的双信号协同入侵检测模型。依据入侵检测系统与生物免疫机制的对应关系,详细分析了模型的组成模块及处理流程。引入细胞自动机思想,提供了一种危险感知的新思路。结合产生式规则推理技术,给出了一种有效的危险域的建立方法。系统只对"危险"进行响应,提高了系统的检测效率,同时,"危险"的识别建立在抗原识别信号和协同刺激信号双重作用的基础上,有效地降低了系统的误报率。In order to overcome the limitations lied at the classic self-non-self thinking, this paper proposes a novel Intrusion Detection System(IDS) based on double-signal inspired by danger theory. The composition modules and process flow are seriously analyzed according to the corresponding relationship between IDS and HIS. A new approach is proposed to sense danger by introducing cellular Automata. An effective method to construct danger zones is given by combining with the reasoning of production rules. The detection efficiency of the system is improved due to its only response to danger signal. Meanwhile, since the danger is sensed depending on both antigen recognition signal and co-simulation signal ,the rate of false alarm has been greatly reduced.
分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:3.137.213.117