作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2006, Vol. 32 ›› Issue (14): 130-132. doi: 10.3969/j.issn.1000-3428.2006.14.048

• 安全技术 • 上一篇    下一篇

基于入侵意图的报警信息关联分析技术

史 亮;王备战;姚俊峰   

  1. 厦门大学软件学院,厦门 361005
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2006-07-20 发布日期:2006-07-20

Alerts Information Association Analysis Technology Based on Intrusion Intention

SHI Liang;WANG Beizhan; YAO Junfeng   

  1. Software School, Xiamen University, Xiamen 361005
  • Received:1900-01-01 Revised:1900-01-01 Online:2006-07-20 Published:2006-07-20

摘要: 针对目前报警信息关联技术中存在的问题,提出了基于入侵意图的报警信息关联分析技术。该技术不仅继承了基于入侵策略的报警信息关联分析方法所具有的时效性、预见性强等优点,而且提高了

关键词: 入侵检测, 报警信息关联分析, 入侵策略模型

Abstract: This paper presents an alerts association analysis technology based on intrusion intention in order to overcome the problems exited in today’s alerts association analysis technologies. This method not only inherits the merits of the alerts association analysis technology based on intrusion strategy such as foreseeable, but also improves the adaptability of the intrusion strategy model. Furthermore, it gives the “skipping step” analysis mechanism and its improvement on the comprehension ability of the intrusion detection system.

Key words: Intrusion detection, Alerts information association analysis, Intrusion strategy model

中图分类号: