作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2007, Vol. 33 ›› Issue (20): 173-175. doi: 10.3969/j.issn.1000-3428.2007.20.060

• 安全技术 • 上一篇    下一篇

生物免疫在入侵检测分析引擎中的应用

周宣武1,2,杨晓元1,2,魏 萍1,胡予濮2   

  1. (1. 武警工程学院电子技术系网络与信息安全武警部队重点实验室,西安 710086; 2. 西安电子科技大学网络信息安全教育部重点实验室,西安 710071)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2007-10-20 发布日期:2007-10-20

Application of Biological Immunology in Intrusion Detection Analysis Engine

ZHOU Xuan-wu1,2, YANG Xiao-yuan1,2, WEI Ping1, HU Yu-pu2     

  1. (1. Key Laboratory of Network & Information Security of APF, Engineering College of APF, Xi’an 710086; 2. Key Laboratory of Network&Information Security of the Ministry of Education, Xidian University, Xi’an 710071)
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-10-20 Published:2007-10-20

摘要: 分析了生物免疫系统在人工智能系统研究中优良的隐喻机理,针对免疫病理转移造成的入侵检测系统(IDS)的安全漏洞,将生物免疫优良的隐喻机理应用于入侵检测分析引擎的研究与开发,设计了一类测度参数优化算法,并在此基础上提出了一类混合入侵检测分析引擎。该方案避免了免疫病理机制转移进入IDS造成的安全隐患以及现有入侵检测引擎虚警与误警率高的缺陷,增强了IDS的实时性、健壮性、高效性、并行性和可适应性。

关键词: 生物免疫, 入侵检测, 免疫病理转移, 混合检测引擎

Abstract: This paper analyzes the security threats of the immune IDS schemes and the useful metaphor of biological immune system considering whose application in the study of IDS. In light of the system flaws arising from the transfer of disease-causing mechanisms of biological immune system into IDS, an algorithm for optimizing measure parameters based on genetic algorithm and biological immunology is designed together with a hybrid intrusion detection engine. The scheme precludes the security problems by utilizing the useful metaphors of biological immunity and the prominent characteristics of genetic algorithm. It is characterized by parallel operating, stability, adaptability and robustness. The paper justifies its brevity, security, high efficiency.

Key words: biological immunology, intrusion detection, transfer of pathological mechanism, hybrid detection engine

中图分类号: