论文部分内容阅读
计算机入侵检测是维护网络安全的重要手段,当计算机系统检测到入侵行为时,这就要求响应环节做出尽快地响应,并记录出本次入侵的类型,为网络安全保驾护航。由于大多数入侵行为具有关联性、特征性,所以计算机入侵检测系统地建立就依靠这种特征。本文主要研究了基于关联规则的计算机入侵检测方法的相关内容,并在文章的最后部分介绍了入侵检测体系是如何运行的。
Computer intrusion detection is an important means to maintain the network security. When the computer system detects the intrusion, it requires the response to respond as soon as possible and records the type of the intrusion to protect the network security. Since most intrusion behaviors are related and characteristic, the establishment of computer intrusion detection system relies on this feature. This paper mainly studies the related content of the computer intrusion detection method based on association rules, and introduces how the intrusion detection system works in the last part of the article.