作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2007, Vol. 33 ›› Issue (10): 153-154,. doi: 10.3969/j.issn.1000-3428.2007.10.055

• 安全技术 • 上一篇    下一篇

基于模糊动态聚类的入侵检测

胡康兴,唐东斌   

  1. (湘潭大学信息工程学院,湘潭 411105)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2007-05-20 发布日期:2007-05-20

Intrusion Detection Based on Fuzzy Clustering

HU Kangxing, TANG Dongbing   

  1. (Information Engineering College, Xiangtan University, Xiangtan 411105)
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-05-20 Published:2007-05-20

摘要: 为了提高入侵检测系统对入侵特征知识的归纳和概括能力,提出了将一种基于模糊等价关系的动态聚类方法应用于对入侵特征集进行层次聚类。实验证明该方法提高了系统识别未知入侵行为的能力,并且通过动态调整参数能使检测在误警率和检测率中达到较好的 平衡。

关键词: 模糊聚类, 入侵检测, 误警率, 检测率

Abstract: In order to improve IDS’s ability of generalization for knowledge of intrusion, a method is put forward that applies fuzzy clustering to obtain hierarchy generation for intrusion feature set. The experiments prove that it can improve ability to detect and attain best balance between rate of detection and rate of false alarms by adjusting parameter.

Key words: Fuzzy clustering, Intrusion detection, Rate of false alarms, Rate of detection

中图分类号: