期刊文献+

一种基于Agent技术的入侵检测系统模型 被引量:1

A Framework of Intrusion Detection System Based on Agent Technology
下载PDF
导出
摘要 本文首先指出了将Agent技术应用于入侵检测系统的优势,依据入侵检测系统的特点给出了主机的状态转换图,并提出了一个入侵检测模型,该模型的主机中有数据异常检测Agent、特征提取Agent、数据一致性检测Agent、完整性检测Agent以及日志处理,Agent通过学习机制建立行为库,对行为库里的信息进行推理获得入侵规则信息并将其加入到入侵规则库.最后用Aglet技术对该模型进行了仿真和实现,得出基于Agent的入侵检测技术具有较高的检测率及较低的误报率。 In this paper,we point out the advantages of using agent technology intrusion detection system at first. State transformation graph of host is shown then. An intrusion detection framework is designed. There are data anomalous agent,character extraction agent,data consistency agent,integrated agent and log process in host. Agents found action base through learning. Through reasoning to action base agent gets intrusion information and appends the information to intrusion rules base. Finally,simulation and implementation of the framework are done using aglets technology. The conclusion is gotten that intrusion detection based on agent has higher detection efficient and lower wrong report.
出处 《微计算机信息》 2010年第3期96-98,共3页 Control & Automation
基金 基金申请人:杜献峰 项目名称:多Agent在网络安全中的应用技术研究 颁发部门:河南省教育厅(2006520020)
关键词 移动AGENT 入侵检测系统 AGLETS Mobil Agent Intrusion Detection System Aglets
  • 相关文献

参考文献2

二级参考文献5

共引文献4

同被引文献5

  • 1S. Deering, R.Hinden. Internet Protocol Version 6 (IPv6) Specification[S]. RFC 2460, 1998.
  • 2Sean Convery, Darrin Miller. IPv6 and IPv4 thread comparison and best-practice evaluation [EB/OL]. http://seanconvery.com/IPv6. html. 2004-04-11.
  • 3Jim Bound. Firewall design center and architecture requirement IPv6 [EB/OL]. http://www.nav6tf.org/documents/nav6tf.technical_report.firewall.pdf. 2006-10.
  • 4Merike Kaeo, David Green. IPv6 security technology paper [EB/ OL]. http://www.nav6t f.org/documents/nav6ff.security_report.pdf 2006-07-22.
  • 5Eric Vyncke. (2008--05-06). IPv6 security threats and mitigations [EB/OL]. http'.//www.cisc o.com/web/S I/expo2009/assets/docs/IPv6_Security_groznje_in_mehanizmi_zaseite_Eric_Vyncke.pdf.2009.

引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部