Intelligent agents for intrusion detection

被引:80
作者
Helmer, GG [1 ]
Wong, JSK [1 ]
Honavar, V [1 ]
Miller, L [1 ]
机构
[1] Iowa State Univ, Ames, IA 50011 USA
来源
1998 IEEE INFORMATION TECHNOLOGY CONFERENCE, PROCEEDINGS | 1998年
关键词
D O I
10.1109/IT.1998.713396
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
This paper focuses on intrusion detection and countermeasures with respect to widely-used operating systems and networks. The design and architecture of an intrusion detection system built from distributed agents is proposed to implement an intelligent system on which data mining can be performed to provide global, temporal views of an entire networked system. A starting point for agent intelligence in our system is the research into the use of machine learning over system call traces from the privileged sendmail program on UNIX. We use a rule learning algorithm to classify the system call traces for intrusion detection purposes and show the results.
引用
收藏
页码:121 / 124
页数:4
相关论文
empty
未找到相关数据