[1]安丽丽,方贤进.树突细胞算法在线分析组件的研究[J].计算机技术与发展,2014,24(01):147-150.
 AN Li-li,FANG Xian-jin.Study of Dendritic Cell Algorithm Online Analysis Module[J].,2014,24(01):147-150.
点击复制

树突细胞算法在线分析组件的研究()
分享到:

《计算机技术与发展》[ISSN:1006-6977/CN:61-1281/TN]

卷:
24
期数:
2014年01期
页码:
147-150
栏目:
安全与防范
出版日期:
2014-01-31

文章信息/Info

Title:
Study of Dendritic Cell Algorithm Online Analysis Module
文章编号:
1673-629X(2014)01-0147-04
作者:
安丽丽方贤进
安徽理工大学 计算机学院
Author(s):
AN Li-liFANG Xian-jin
关键词:
在线分析组件危险理论树突细胞算法分片
Keywords:
online analysis moduledanger theorydendritic cells algorithmsegmentation
分类号:
TP391
文献标志码:
A
摘要:
原始树突状细胞算法( DCA)的离线分析过程,将会导致时间差异,从而产生假警报,增加了虚警率,也会导致攻击的成功发生,这对一个入侵检测系统来说是致命的。因此,文中的目的就是在不影响检测精度的前提下提高检测速度。于是文中提出了分片思想的在线分析组件与DCA相集成的方法,即根据抗原采样数量或者时间将一系列已处理的信息分割成为更小的部分,使得每个分片独立地进行实时的、周期性的分析,这样在每个分片内的入侵攻击就能及时地被识别出来。文中给出了DCA在线分析模块的伪代码描述,并且将其应用于SYN端口扫描的检测实验中。结果表明,DCA在线分析模块在不影响检测精度的前提下有效地提高了检测速度。
Abstract:
The analysis process of original dendritic cells algorithm ( DCA) is offline,which results in time difference,producing false a-larms and increasing false negative rate,and leading to the success of the attack,which is fatal for an intrusion detection system. Propose integrating online analysis with the DCA using segmentation idea,that is,segmentation involves partitioning a sequence of processed in-formation into relative smaller segments,in terms of the number of data items or time. The analysis is performed within each individual segment. Intrusions appeared within the duration of this segment can be identified. The pseudo code of DCA with online analysis module is also presented,and it is applied to experiments of detection of SYN port scan. The experimental results indicate that the DCA with on-line analysis module can effectively improve detection speed without compromising detection accuracy.

相似文献/References:

[1]李京.基于危险理论的网络安全风险评估[J].计算机技术与发展,2012,(08):159.
 LI Jing.Evaluation Model for Network Security RiskBased on Danger Theory[J].,2012,(01):159.

更新日期/Last Update: 1900-01-01