Evidential reasoning research on intrusion detection

被引:1
作者
Wang, XP [1 ]
Xu, H [1 ]
Zheng, S [1 ]
Cheng, AY [1 ]
机构
[1] Wuhan Univ, Wuhan 430079, Hubei, Peoples R China
来源
FIFTH INTERNATIONAL SYMPOSIUM ON INSTRUMENTATION AND CONTROL TECHNOLOGY | 2003年 / 5253卷
关键词
theory of evidence; intrusion detection; pattern recognition; knowledge reasoning;
D O I
10.1117/12.522207
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In this paper, we mainly aim at D-S theory of evidence and the network intrusion detection these two fields. It discusses the method how to apply this probable reasoning as an AI technology to the Intrusion Detection System (IDS). This paper establishes the application model, describes the new mechanism of reasoning and decision-making and analyses how to implement the model based on the synscan activities detection on the network. The results suggest that if only rational probability values were assigned at the beginning, the engine can, according to the rules of evidence combination and hierarchical reasoning, compute the values of belief and finally inform the administrators of the qualities of the traced activities-intrusions, normal activities or abnormal activities.
引用
收藏
页码:930 / 934
页数:5
相关论文
共 4 条