Fuzzy model tuning for Intrusion Detection Systems

被引:0
|
作者
Yu, Zhenwei [1 ]
Tsai, Jeffrey J. P. [1 ]
机构
[1] Univ Illinois, Dept Comp Sci, Chicago, IL 60607 USA
关键词
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Intrusion Detection System (IDS) detects ongoing intrusive activities in information systems. However, an IDS usually suffers high false alarm especially in a dynamically changing environment, which forces continuous tuning on its detection model to maintain sufficient performance. Currently, the manually tuning work greatly depends on the user to work out and integrate the tuning solution. We have developed an automatically tuning intrusion detection system (ATIDS). The experimental results show that when tuning is not delayed too long, the system can achieve about 20% improvement compared with the system without model tuner. But the user can only control whether the tuning should be performed by sending/blocking feedbacks. To give the user more powerful but intuitive control on the tuning, we develop a fuzzy model tuner, through which the user can tune the model fuzzily but yield much appropriate tuning. The results show the system can achieve about 23% improvement.
引用
收藏
页码:193 / 204
页数:12
相关论文
共 50 条
  • [41] An Intrusion Detection Model Based on Fuzzy C-means Algorithm
    Man, Liyu
    Xian, Youan
    2018 8TH INTERNATIONAL CONFERENCE ON ELECTRONICS INFORMATION AND EMERGENCY COMMUNICATION (ICEIEC), 2018, : 120 - 123
  • [42] The Intrusion Detection Model Based on the Fuzzy Judgment in Ad Hoc Network
    Liu Shi-rui
    Li Zhe
    2009 5TH INTERNATIONAL CONFERENCE ON WIRELESS COMMUNICATIONS, NETWORKING AND MOBILE COMPUTING, VOLS 1-8, 2009, : 2886 - 2889
  • [43] Network intrusion detection model based on fuzzy support vector machine
    Long, Yanjun
    Ouyang, Jianquan
    Sun, Xinwen
    Journal of Networks, 2013, 8 (06) : 1387 - 1394
  • [44] Detection model of network abnormity based on fuzzy association rules for intrusion detection system
    Peng, XG
    Mai, YL
    Liu, YS
    Wu, YS
    ISTM/2003: 5TH INTERNATIONAL SYMPOSIUM ON TEST AND MEASUREMENT, VOLS 1-6, CONFERENCE PROCEEDINGS, 2003, : 4858 - 4861
  • [45] Intrusion detection systems
    IEEE Intelligent Systems and Their Applications, 2001, 16 (01):
  • [46] INTRUSION DETECTION SYSTEMS
    WILLIAMS, JD
    TRANSACTIONS OF THE AMERICAN NUCLEAR SOCIETY, 1979, 33 (NOV): : 733 - 734
  • [47] An Adaptive Automatically Tuning Intrusion Detection System
    Yu, Zhenwei
    Tsai, Jeffrey J. P.
    Weigert, Thomas
    ACM TRANSACTIONS ON AUTONOMOUS AND ADAPTIVE SYSTEMS, 2008, 3 (03)
  • [48] Fuzzy network profiling for intrusion detection
    Dickerson, JE
    Dickerson, JA
    PEACHFUZZ 2000 : 19TH INTERNATIONAL CONFERENCE OF THE NORTH AMERICAN FUZZY INFORMATION PROCESSING SOCIETY - NAFIPS, 2000, : 301 - 306
  • [49] Intrusion detection based on fuzzy reasoning
    Yu Fei
    Shen Yue
    Liao Guiping
    Zhang Linfeng
    Xu Cheng
    PROCEEDINGS OF THE 26TH CHINESE CONTROL CONFERENCE, VOL 4, 2007, : 331 - +
  • [50] A Fuzzy Clustering Approach for Intrusion Detection
    Zeng, QingPeng
    Wu, ShuiXiu
    WISM: 2009 INTERNATIONAL CONFERENCE ON WEB INFORMATION SYSTEMS AND MINING, PROCEEDINGS, 2009, : 728 - +