Maids _ station provide the running environment to detection agent Maidsstation端提供移動檢測代理aglet的支撐環(huán)境。
The agent system of a _ dids consists of four modules : monitor agent , state detection agent , intrusion detection agent and auto response agent . every agent works independently and together to accomplish intrusion detection A _ dids的代理體系由監(jiān)控代理、狀態(tài)檢測代理、入侵檢測代理和自動響應(yīng)代理組成,代理之間各自獨立又相互協(xié)作,合作完成入侵檢測的任務(wù)。
5 ) we describe the design and implemention of an agent - based network intrusion detection prototype system . this prototype implements a network agent in linux platform which is compound of cooperative detection agent and communication agent , and a remote agent console in windows 2000 platform 原型中實現(xiàn)了基于linux的網(wǎng)絡(luò)型代理,它由通信代理和檢測代理兩部分共同協(xié)作組成;原型還在windows2000下實現(xiàn)了遠(yuǎn)程代理控制臺。
Then , we can compare the current action pattern with the pattern in the pattern database to find out the known or unknown misuse intrusions and anomaly intrusions . the system model is extensible for adding new intrusion detection agents or new intrusion models . it adopts data mining technology to cut down the dependency of manual encoding and expert experience 這些模式可用來指導(dǎo)系統(tǒng)屬性的選擇和構(gòu)造,挖掘生成出有用的系統(tǒng)或者用戶的行為模式(正常的或者異常的) ;通過比較當(dāng)前的系統(tǒng)行為模式和已有的模式規(guī)則的相似度來發(fā)現(xiàn)已知或者未知的誤用入侵和異常入侵活動。