全部 标题 作者
关键词 摘要

OALib Journal期刊
ISSN: 2333-9721
费用:99美元

查看量下载量

相关文章

更多...

Research on Syscall-based Intrusion Detection Technology for Linux System
基于系统调用的Linux系统入侵检测技术研究*

Keywords: IDS,system call,LKM(loadable kernel modules),maximum likelihood,Markov model
入侵检测
,系统调用,可加载内核模块技术,极大似然,马尔可夫模型,系统调用短序列,Linux,入侵检测,技术研究,System,Technology,Intrusion,Detection,问题,分析,有效性,检测方法,实验,异常行为,识别,行为特征,提取,模型,Markov,极大似然,使用

Full-Text   Cite this paper   Add to My Lib

Abstract:

A process-orientated intrusion detection method based on system call for Linux system was proposed: The LKM(Loadable Kernel Modules) technology running in the kernel space was used to obtain the system calls of a process,and the Markov model based on the maximum likelihood syscall short sequences was used to describe the normal profile and to detect the anomaly of a process.Experiments show good feasibility and validity of this scheme.Some key problems of the implementation for the scheme were discussed.

Full-Text

Contact Us

service@oalib.com

QQ:3279437679

WhatsApp +8615387084133