Dmdids integrates host - based ids with network - based ids . it mainly comprises of hids , nids and a central manager Dmdids主要包括基于主機(jī)的入侵檢測組件、基于網(wǎng)絡(luò)的入侵檢測組件和中心管理器。
We design a cve - based intrusion detection expert system rule base , it combine the network - based ids and host - based ids into a system , and provide detection , report and response together 本文提出一種基于cve標(biāo)準(zhǔn)建立的入侵檢測專家系統(tǒng)規(guī)則庫,該入侵檢測專家系統(tǒng)是基于網(wǎng)絡(luò)和主機(jī)的混合結(jié)合體,提供集成化的檢測、報(bào)告和響應(yīng)功能。
This system has good distribute and scalable ability . it can combine the network - based ids and host - based ids into a system , and can provide an integration environment for detection , report and response 該系統(tǒng)具有良好的分布性和擴(kuò)展性,它可以將基于網(wǎng)絡(luò)和基于主機(jī)的入侵檢測系統(tǒng)有機(jī)地結(jié)合在一起,提供集成化的檢測、報(bào)告和響應(yīng)功能。
We design a component - based intrusion detection system , which has good distribute and scalable ability . it combine the network - based ids and host - based eds into a system , and provide detection , report and response together 論文中提出了一種基于部件的入侵檢測系統(tǒng),這是將基于網(wǎng)絡(luò)和基于主機(jī)和入侵檢測系統(tǒng)有機(jī)地結(jié)合地一起,提供集成化的檢測、報(bào)告和響應(yīng)功能。
Whether propose kinds of invasion detection system not based on part this text , have good distribution performance of and can expanding . it combine the network - based ids and host - based eds into a system , and provide detection , report and respone together 本文提出一種基于部件的入侵檢測系統(tǒng),具有良好的分布性能和可擴(kuò)展性。他將基于網(wǎng)絡(luò)和基于主機(jī)的入侵檢測系統(tǒng)有機(jī)地結(jié)合在一起,提供集成化的檢測、報(bào)告和響應(yīng)功能。
Aiming at the shortage of intrusion detection system in existence , the idea of distributed intrusion detection system based on multisensor information fusion technology is put forward in this paper , that is cyber - ids . traditional ids , which consist of host - based ids and network - based ids , are limited only to safeguard single host system or network system , the resources and scopes to be protected are localized very much 傳統(tǒng)ids包括主機(jī)ids和網(wǎng)絡(luò)ids ,僅限于保護(hù)單一主機(jī)系統(tǒng)或網(wǎng)絡(luò)系統(tǒng),保護(hù)的資源和范圍都很有局限,而現(xiàn)有的分布式入侵檢測系統(tǒng)對異構(gòu)系統(tǒng)及大規(guī)模網(wǎng)絡(luò)的監(jiān)測明顯不足,加之不同的ids系統(tǒng)之間不能協(xié)同工作,無法相互配合,取長補(bǔ)短。
The first chapter surveys the state - of - the - art of intrusion detection and the related problems . the second chapter provides the details of intrusion detection techniques , in particularly , it introduces two concepts ( network - based ids ( nids ) and host - based ids ( hids ) ) , and the distributed ids . besides , this chapter proposes three intrusion detection methods ( misuse detection , anomaly detection and integrality test ) , and discusses the applications of the artificial neural network technology 、 expert system technology 、 and pattern reasoning technology in the ids 第二章討論入侵檢測技術(shù)基礎(chǔ),介紹了基于網(wǎng)絡(luò)的入侵檢測系統(tǒng)( ndis )和基于主機(jī)的入侵檢測系統(tǒng)( hdis )的概念,對分布式入侵檢測系統(tǒng)也進(jìn)行了相關(guān)介紹;討論了三種入侵檢測辦法,包括誤用檢測( misusedetection ) 、異常檢測( anomalydetection )和完整性檢測,介紹了人工神經(jīng)網(wǎng)絡(luò)技術(shù)、專家系統(tǒng)技術(shù)以及模式推理技術(shù)在ids中的應(yīng)用。