作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2010, Vol. 36 ›› Issue (19): 165-167. doi: 10.3969/j.issn.1000-3428.2010.19.057

• 安全技术 • 上一篇    下一篇

基于Snort的分布式协作入侵检测系统

薛严冬,韩秀玲,戴尚飞   

  1. (东华大学信息科学与技术学院,上海 201620)
  • 出版日期:2010-10-05 发布日期:2010-09-27
  • 作者简介:薛严冬(1982-),男,硕士,主研方向:网络智能与网络控制;韩秀玲,副教授;戴尚飞,硕士
  • 基金资助:
    上海市自然科学基金资助项目(08ZR1400400);上海市教育发展基金会晨光计划基金资助项目(2007CG42)

Distributed Cooperative Intrusion Detection System Based on Snort

XUE Yan-dong, HAN Xiu-ling, DAI Shang-fei   

  1. (College of Information Science and Technology, Donghua University, Shanghai 201620, China)
  • Online:2010-10-05 Published:2010-09-27

摘要: 基于Snort设计一个分布式协作入侵检测系统。将感性信任理论和反馈思想相结合,减小系统误判断的几率,提升系统的自适应能力。给出协作节点间的数据传输协议、基于感性信任的协作机制及信任度更新算法。通过模拟攻击对系统进行测试,结果证明,节点间可以实现对等协作,有效避免协作过程中误判断的发生。

关键词: 入侵检测系统, 分布式, 协作, 感性信任

Abstract: Based on Snort, this paper presents a Distributed Cooperative Intrusion Detection System(DCIDS). Through introducing subjective trust theory and feedback theory into cooperative detection, the system reduces the probability of misjudge, and improves self-adapting capability. It introduces transmission protocol between nodes, and proposes the cooperative scheme and the trust level update algorithms. The system is tested by simulated intrusion, and result shows that it completes the cooperative detection, and reduces the probability of misjudge properly.

Key words: Intrusion Detection System(IDS, distributed, cooperative, subjective trust

中图分类号: