%0 Journal Article %T Application of Bayesian Correlation Arithmetic to Distributed Intrusion Detection System
Bayesian事件关联算法在分布式入侵检测系统中的应用 %A SHU Jun-Hui %A YANG Wu %A LI Bo Chongqing Institute of Technology %A Chongqing %A
舒俊辉 %A 杨武 %A 李波 %J 计算机科学 %D 2005 %I %X On the basis of analyzing the Multiple-source events correlation in the Distributed Intrusion Detection,we introduce a framework of real-time events gathering and correlation analyzing, which is based on the Multiple Dis- tributed Intrusion Detection's Sensors. Using Bayesian correlation arithmetic,we process the events such as filtering, reducing,and formatting them. At last,we provide the unified formatted evidences based on IDMEF to upper level model to deduce whether attack is true. The framework has been applied in our item projected by science and technol- ogy key project of National ministry of education. %K DIDS %K Correlation %K Bayeian
分布式入侵检测系统 %K 事件 %K 关联算法 %K 应用 %K 网络环境下 %K 关联分析 %K 数据采集 %K 分类处理 %K 传感嚣 %K 教育部 %K 管理员 %K 多源 %K 报警 %K 攻击 %U http://www.alljournals.cn/get_abstract_url.aspx?pcid=5B3AB970F71A803DEACDC0559115BFCF0A068CD97DD29835&cid=8240383F08CE46C8B05036380D75B607&jid=64A12D73428C8B8DBFB978D04DFEB3C1&aid=5EAE51DD920C50C3&yid=2DD7160C83D0ACED&vid=9971A5E270697F23&iid=DF92D298D3FF1E6E&sid=A4FA325EA800C820&eid=74011071555EB4E5&journal_id=1002-137X&journal_name=计算机科学&referenced_num=0&reference_num=8