Dissertation > Excellent graduate degree dissertation topics show

Research on Intrusion Detection Based on Protocol Analysis and Immune Principle

Author: CaoChuanLin
Tutor: LiYongZhong
School: Jiangsu University of Science and Technology
Course: Computer Software and Theory
Keywords: Intrusion Detection Artificial Immune Protocol analysis
CLC: TP393.08
Type: Master's thesis
Year: 2011
Downloads: 22
Quote: 0
Read: Download Dissertation

Abstract


With the increasing complexity of the structure of the computer network , the rapid growth of the scale , increasing illegal invasion . Obviously can not meet the needs of the traditional passive security defense technology . Intrusion detection technology as the next generation of security and defense measures to build a proactive information security , to make up for the deficiencies of the traditional security and defense technology . The protocol analysis technique full use of network protocols to detect the presence of an attack , and to greatly reduce the amount of calculation of the detection process , and improve the detection accuracy . Protocol analysis is based on the misuse intrusion detection technology can not detect unknown attacks . The mechanism of artificial immune system protects the body from various violations and intrusion detection systems have natural similarities , and it has since adaptability , robustness , distribution and other characteristics is the computer security system does not have . Therefore , based on immune principle of intrusion detection technology is becoming in recent years, the field of intrusion detection research hotspot . Immune principle and protocol analysis technology proposed an improved intrusion detection model based on protocol analysis and immunological principles , detailed design data capture module , protocol analysis module , a detection module and the response module . Detector generating an improved negative selection algorithm , and can eliminate the presence of mutually matched detectors , while improving unknown intrusion detection capability . Improve the structure of the antibody immune algorithm also takes into account , in addition to the basic features of the network data , based on the statistical characteristics of the time , in order to better reflect the intrinsic link between the attack packets . The coding of the detector , the blurring of the distinction between normal behavior and abnormal behavior , taking into account the proposed using fuzzy concept coding scheme , a great degree of narrowing the length of the detector encoding . The selection of the data set provided by the DARPA 1999 intrusion detection evaluation plan simulation experiments . Select the data set of the first week of the training data , generated by training a certain number of mature detector ; selected data as test data of the fifth week , including a number of probing attacks and denial of service attacks . Experimental results show that : the proposed model and has a good detection rate in the premise of low false alarm rate .

Related Dissertations

  1. Intrusion detection based on the ultrasonic echo envelope in the military security patrols,E919
  2. Association rule mining based Intrusion Detection System Research and Implementation,TP393.08
  3. The Research on Intrusion Detection System Based on Machine Learning,TP393.08
  4. One based on pattern matching lightweight network intrusion detection system design and implementation,TP393.08
  5. Study of Medical Image Registration Methods Based on Multi-features and Artificial Immune Algorithm,TP391.41
  6. The Design and Implementation of a NEL-Based GTP Analysis and Monitoring System,TN929.5
  7. Research on Application of Intrusion Detection Based on Improved FCM,TP393.08
  8. Research of Rapid Intelligent Intrusion Detection Technology,TP393.08
  9. WiMAX protocol analysis software design and implementation,TP311.52
  10. Automated Fuzz Testing network protocol vulnerabilities mining method,TP393.08
  11. Ares protocol analysis and traffic detection mechanism,TP393.06
  12. Based on pattern matching and protocol analysis Distributed Intrusion Detection,TP393.08
  13. Research on the host network traffic and network behavior characteristics,TP393.06
  14. Comprehensive host -based firewalls and intrusion detection security system,TP393.08
  15. The LAN packet monitoring system NetMonitor the Design and Implementation,TP393.1
  16. Design and Implementation of the Platform of Campus Network IDS,TP393.18
  17. Design of a Web Data Acquisition and Reduction System,TP393.092
  18. Research and Realize of Network Monitoring Based on Data Packet Capture,TP393.08
  19. Research and Application of Information Security Technique in Electronic Government Affair,TP393.08
  20. The Improvement of CPK and the Design and Analysis of Electronic Payment Protocols Based on CPK,TP393.08

CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net  Mobile