作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2009, Vol. 35 ›› Issue (23): 118-119. doi: 10.3969/j.issn.1000-3428.2009.23.040

• 安全技术 • 上一篇    下一篇

基于KCCA优化的网络入侵检测算法

钱鹏江1,王士同1,2,徐 华1,2,颜惠琴3   

  1. (1. 江南大学信息工程学院,无锡 214122;2. 南京理工大学,南京 210094;3. 无锡职业技术学院,无锡 214121)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2009-12-05 发布日期:2009-12-05

Network Intrusion Detection Algorithm Based on KCCA Optimization

QIAN Peng-jiang1, WANG Shi-tong1,2, XU Hua1,2, YAN Hui-qin3   

  1. (1. School of Information Technology, Jiangnan University, Wuxi 214122; 2. Nanjing University of Science and Technology, Nanjing 210094; 3. Wuxi Institute of Technology, Wuxi 214121)
  • Received:1900-01-01 Revised:1900-01-01 Online:2009-12-05 Published:2009-12-05

摘要: 入侵检测系统所得原始特征通常是高维度的,这些高维度特征带来了较大的计算开销。针对该问题,采用核典型相关分析方法进行原始特征的二次提取,得到简约而重要的二次特征。在该二次特征的基础上运用二叉树多分类支持向量机法判别待测网络状态所属类别。仿真实验证明,该算法在不显著损失检测准确度的情况下可提升系统实时性,从而达到优化目标。

关键词: 入侵检测系统, 核典型相关分析, 二次特征, 二叉树支持向量机

Abstract: In Intrusion Detection System(IDS), the original features normally lead to considerable computational complexity because of their high dimensions. In this paper, reduced and important further features are obtained by introducing Kernel Canonical Correlation Analysis(KCCA), and the binary tree based multi-class classification SVM is used to complete the classification task by these further features. This algorithm is devoted to increase the real-time performance as much as possible under the condition of not clearly losing classification accuracy. Simulation experiment confirms the above advantages.

Key words: Intrusion Detection System(IDS), Kernel Canonical Correlation Analysis(KCCA), further features, binary tree based SVM

中图分类号: