Author Login Editor-in-Chief Peer Review Editor Work Office Work

Computer Engineering ›› 2007, Vol. 33 ›› Issue (08): 154-156. doi: 10.3969/j.issn.1000-3428.2007.08.053

• Security Technology • Previous Articles     Next Articles

Study on Distributed Intrusion Detection System

WANG Qiang, JIANG Tianfa   

  1. (School of Computer Science, South Center Univ. of Nationalities, Wuhan 430073)
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-04-20 Published:2007-04-20

分布式入侵检测系统模型研究

王 强,蒋天发   

  1. (中南民族大学计算机科学学院,武汉 430073)

Abstract: Excluding the main issue of intrusion detection system (IDS): implementation of intrusion detection algorithm, this paper concentrates on other issues of IDS: sensor and analyzer, and proposes some advices that can improve the veracities, the throughout and the self-study abilities of the IDS via the studies and analyses on sensor and analyzer. Based on it, some ideas are implemented to a distributed intrusion detection system (DIDS) model that most of certain intrusion detection algorithms can be applied to it. Meanwhile, the advantage and disadvantage of the DIDS model are discussed.

Key words: Intrusion detection system (IDS), Sensor, Analyzer, Distributed intrusion detection system (DIDS) model

摘要: 避开入侵检测系统的核心问题——入侵检测算法的具体实现,通过对有关感应器、分析器问题的研究分析,提出了一些有利于提高入侵检测准确率、提高系统吞吐量、提高系统自主学习能力的建议。以此为基础,给出了一种不受具体入侵检测算法限制的分布式入侵
检测模型,分析了该模型的优缺点。

关键词: 入侵检测系统, 感应器, 分析器, 分布式入侵检测系统模型

CLC Number: