一种基于危险理论的双信号免疫入侵检测模型  被引量:3

Double-signal based immune intrusion detection model inspired by danger theory

在线阅读下载全文

作  者:符海东[1] 李雪[1] 

机构地区:[1]武汉科技大学计算机科学与技术学院,武汉430065

出  处:《计算机工程与应用》2008年第14期113-117,共5页Computer Engineering and Applications

基  金:湖北省教育厅重点科研项目基金(No.2004D006)

摘  要:为了克服传统的"自我—非我"模型的不足,设计了一种新的基于危险理论的双信号协同入侵检测模型。依据入侵检测系统与生物免疫机制的对应关系,详细分析了模型的组成模块及处理流程。引入细胞自动机思想,提供了一种危险感知的新思路。结合产生式规则推理技术,给出了一种有效的危险域的建立方法。系统只对"危险"进行响应,提高了系统的检测效率,同时,"危险"的识别建立在抗原识别信号和协同刺激信号双重作用的基础上,有效地降低了系统的误报率。In order to overcome the limitations lied at the classic self-non-self thinking, this paper proposes a novel Intrusion Detection System(IDS) based on double-signal inspired by danger theory. The composition modules and process flow are seriously analyzed according to the corresponding relationship between IDS and HIS. A new approach is proposed to sense danger by introducing cellular Automata. An effective method to construct danger zones is given by combining with the reasoning of production rules. The detection efficiency of the system is improved due to its only response to danger signal. Meanwhile, since the danger is sensed depending on both antigen recognition signal and co-simulation signal ,the rate of false alarm has been greatly reduced.

关 键 词:危险理论 入侵检测 免疫 细胞自动机 

分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]

 

参考文献:

正在载入数据...

 

二级参考文献:

正在载入数据...

 

耦合文献:

正在载入数据...

 

引证文献:

正在载入数据...

 

二级引证文献:

正在载入数据...

 

同被引文献:

正在载入数据...

 

相关期刊文献:

正在载入数据...

相关的主题
相关的作者对象
相关的机构对象