论文部分内容阅读
入侵检测技术已经成为网络安全领域的研究热点。数据挖掘是从大量数据中发掘出新的、有用模式的过程。把它用于入侵检测,可发掘警报日志信息和审计数据特有的模式,实时分析,寻找黑客入侵的规律,提高入侵检测系统的警报精确度,降低系统管理员的工作强度。并给出了基于数据挖掘的入侵检测系统模型。
Intrusion detection technology has become a research hotspot in the field of network security. Data mining is the process of discovering new and useful patterns from a large amount of data. It can be used in intrusion detection to discover alarm log information and unique data of audit data. Real-time analysis can help to find out the rules of hacking, improve the alarm accuracy of intrusion detection system and reduce the work intensity of system administrator. Intrusion detection system model based on data mining is given.