摘要
针对目前入侵检测系统的不足,将新型分布式处理技术移动Agent与入侵检测融为一体,提出了一种基于移动代理的分布式入侵检测系统(DIDS)的模型;实现了基于该模型的分布式入侵检测系统;采取了保证分布式入侵检测系统自身安全的防范措施.采用层次结构的探测和响应机制,各Agent相互独立,同时能在网络中自由移动,相互协作,以检测分布式攻击,并具有良好的灵活性、健壮性和可扩展性.
Considering the shortcoming of the current intrusion detection system, the model of a distributed intrusion detection system (DIDS) is described and DIDS based on the model is proposed. In addition, the several measure for the network security of DIDS are used. Using the layered construction of sensor and response scheme, the agents are independent but can roam in network freely and collaborate each other to detect the distributed intrusion. Therefore, the DIDS has advantages of flexibility, robustness and scalability.
出处
《武汉大学学报(工学版)》
CAS
CSCD
北大核心
2006年第2期51-54,共4页
Engineering Journal of Wuhan University
基金
国家自然科学基金(40751128)
国家民委重点科研项目(Mzy02004)资助
关键词
分布式入侵检测系统
移动代理
网络安全
distributed intrusion detection system
mobile agents
network security