Research of Intelligent Rule-base Based on Multilayer Intrusion Detection

被引:0
|
作者
Sun Zhixin [1 ]
Jiao Lin [2 ]
机构
[1] Nanjing Univ Posts & Telecommun, Inst Comp, State Key Lab Novel Software Technol, Nanjing, Jiangsu, Peoples R China
[2] Nanjing Univ Posts & Telecommun, Inst Comp, Nanjing, Jiangsu, Peoples R China
关键词
Misuse detection; Anomaly detection; Intelligent rule-base;
D O I
暂无
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
This paper presents a method to establish a rulebase based on multilayer intrusion detection. This rulebase contains two parts: the rulebase based on IP layer intrusion detection and the rulebase based on application layer intrusion detection. The former adopts a mixed quadratic network statistical model to test network traffic which has performances of dynamic principle and low False Positive Probability (FPP) and low False Negative Probability (FNP), and the rulebase is established using the twice-aggregation method. The latter is established by improved Snort. The simulation has proved that this intelligent rulebase can improve detection rate and ability to a large degree, and has low FPP and FNP.
引用
收藏
页码:453 / 460
页数:8
相关论文
共 50 条
  • [1] Fuzzy Rule-Base Based Intrusion Detection System on Application Layer
    Sangeetha, S.
    Haripriya, S.
    Priya, S. G. Mohana
    Vaidehi, V.
    Srinivasan, N.
    RECENT TRENDS IN NETWORK SECURITY AND APPLICATIONS, 2010, 89 : 27 - 36
  • [2] ADAPTING THE RULE-BASE
    FOGARTY, TC
    PROCEEDINGS OF THE 28TH IEEE CONFERENCE ON DECISION AND CONTROL, VOLS 1-3, 1989, : 761 - 766
  • [3] A method of rule-base optimization based on evaluation
    张春祥
    李生
    杨沐昀
    赵铁军
    时晓升
    Journal of Harbin Institute of Technology(New series), 2009, 16 (05) : 708 - 712
  • [4] A method of rule-base optimization based on evaluation
    Zhang, Chun-Xiang
    Li, Sheng
    Yang, Mu-Yun
    Zhao, Tie-Jun
    Shi, Xiao-Sheng
    Journal of Harbin Institute of Technology (New Series), 2009, 16 (05) : 708 - 712
  • [5] A Self Evolutionary Rule-Base
    Khattak, A. M.
    Pervez, Z.
    Khan, W. A.
    Lee, S. Y.
    Lee, Y. K.
    U- AND E-SERVICE, SCIENCE AND TECHNOLOGY, 2011, 264 : 1 - 9
  • [6] Rule-base guided adaptation for mode detection in process control
    Filev, D
    JOINT 9TH IFSA WORLD CONGRESS AND 20TH NAFIPS INTERNATIONAL CONFERENCE, PROCEEDINGS, VOLS. 1-5, 2001, : 1068 - 1073
  • [7] Belief rule-base expert system with multilayer tree structure for complex problems modeling
    Yang, Long-Hao
    Ye, Fei-Fei
    Liu, Jun
    Wang, Ying-Ming
    EXPERT SYSTEMS WITH APPLICATIONS, 2023, 217
  • [8] Fixpoint semantics for rule-base anomalies
    Zhang, D
    ICCI 2005: Fourth IEEE International Conference on Cognitive Informatics - Proceedings, 2005, : 10 - 17
  • [9] Fractal simulation of coronary arteries based on bifurcate rule-base
    Wang, P
    Mou, XQ
    Hou, CJ
    Cai, YL
    VISUALIZATION AND OPTIMIZATION TECHNIQUES, 2001, 4553 : 157 - 161
  • [10] An Intelligent Fuzzy Rule based Feature Selection for Effective Intrusion Detection
    Riyaz, B.
    Ganapathy, S.
    PROCEEDINGS OF THE 2018 INTERNATIONAL CONFERENCE ON RECENT TRENDS IN ADVANCED COMPUTING (ICRTAC-CPS 2018), 2018, : 206 - 211