Dissertation > Excellent graduate degree dissertation topics show
Application of Data Mining in Intrusion Detection System
Author: JiaFeiYu
Tutor: ZhaoFeng
School: Dongbei University of Finance
Course: Applied Computer Technology
Keywords: network security intrusion detection data mining K-means clustering algorithm
CLC: TP393.08
Type: Master's thesis
Year: 2010
Downloads: 44
Quote: 0
Read: Download Dissertation
Abstract
|
The evolution of the era brings about the increasingly fast development of science and technology. The past 19th century witnessed the prosperity of railway transportation while the 20th century which has just spanned experienced the flourishing of infomationization. Currently, we are embracing the times of network. The spreading of computer caused by the development of science and technology as well as the ever-fast inflation of network has made network security issue in the spotlight of public attention. According to the statistics, the economic losses resulting from the network security problems amounted to billons and even tens of billions every year in countries such as America, Germany and Britain.At present, people maintain the network security by relying on the firewall technology, user identification, data encryption technique and virus releasing. However, this methods bears great limitations. First, they are all static defense technology, which can not make timely upgrade and change along with the change of environment but depend on the deliberate configuration and change. Furthermore, defense means like firewall can not sense the internal offense. Nonetheless, network intrusion detection system is proactive in defense. Its introduction to the network security maintenance constitutes great complement to the static defense means such as firewall because it can make real-time detection of the external and internal offense as well as disoperation so interception and response can be done in a timely manner.In the meantime, the rapid development of network technology and accelerating expansion of network resources enables the fast growth of data transmitted online, which poses higher demand on the means of network security maintenance. In the face of enormous data, the flaw of IDS, which can be seen in the’poor self-adaptation capability and untimely change in the wake of the application alteration, expose itself completely. Facing the great amount of data, overload of data takes place frequently while occurrence of misformation and failure to report is becoming critical. The network security will be endangered if the detection efficiency can not be improved. This phenomenon makes the improvement of intrusion detection system extremely urgent.The introduction of data mining technique contributes a lot to the improvement of IDS and plays an important role in the resolution of network security issue. To a larger extent, the defects of IDS is revealed because of the great development of network data, which makes the detection of the IDS extremely hard and the finding of hidden valid data in certain period of time impossible. However, data mining can solve this issue by deleting the incomplete, noisy and obscure data from enormous complicated data so implicit and valuable data can be found for the use of people. It can be safely said that the introduction of data mining rightly makes up the many disadvantages of NIDS whereas many defects also exist in the technique in data mining technique, which is manifested mainly on the algorithm.The weakness embodied in many algorithm of data mining technique includes high complexity and mining inaccuracy, which need further enhancement and improvement. This paper aims to improve one kind of clustering algorithm in the data mining algorithm. K-means, classic clustering algothrim, is used in a broad way. But it has some defects, one of which is the confirmation of K value. The confirmation of K value in the K-means clustering algorithm is very important because it will influence the clustering effect directly. However, the confirmation of K-value can not be done rightly as always for the intrinsic defects and lack of depth in the research. This article discusses one algorithm to determine the K value. This method defines the K value by defining the between-class dissimilarity and within-class similarity. This part constitutes the creative finding of the author and is proved useful in improvement through testing.Besides, there is no doubt that the model of IDS definitely exerts great influence on the function of IDS. This paper combines the merits and demerits of misuse intrusion detection model as well as unusual intrusion detection model and makes them complement each other. Also the model is remolded and theoretically studied so that mixed IDS model is constructed and model theory and structure is proposed. This is also the creative part of this paper.The application of data mining in the IDS is a hotspot issue in China and intensive study regarding this has been done at home and abroad. But it is far from mature and needs to be further researched and studied. Because of the limits of the paper length and experimental environment, demonstration in this paper may seem to be simple. Moreover, the improvement of algorithm and model remains to be further investigated and studied.
|
Related Dissertations
- The Research of Malware Detection Technology Based on Active Mode,TP393.08
- Topology Measurement and Security Analysis on Gnutella and eMule Network,TP393.08
- A Study on Healthcare Product Marketing Based on Data Mining Technology,F426.72
- Gao Zhong-ying academic thought and experience and use of Bufei Decoction treatment of common diseases of the respiratory system drug law,R249.2
- Bing- thick academic thought and clinical experience and empirical studies apply to turtle soups treatment of chronic kidney disease,R249.2
- Intrusion detection based on the ultrasonic echo envelope in the military security patrols,E919
- The Design and Implementation of Bicluster Data Analyzing Software,TP311.52
- Research on Clustering Algorithm Based on Mutation Particle Swarm Optimization,TP18
- Research on Fuzzy C-Mean Clustering Algorithm Based on Particle Swarm Optimization and Shuffled Frog Leaping Algorithm,TP18
- Research on Clustering Algorithm Based on Genetic Algorithm and Rough Set Theory,TP18
- Research on Intrusion Detection Technology of Wireless Sensor Networks Based on Behavior Trust,TP212.9
- Region-based wireless sensor network key management scheme for research,TP212.9
- Based on data mining research tax audit case selection,F812.42
- SX Provincial Public Security Bureau Network Security Corps Performance Evaluation Index System Design,D631.1
- Community-oriented education, personalized learning system and its implementation,TP391.6
- Association rule mining based Intrusion Detection System Research and Implementation,TP393.08
- Data warehouse technology in the banking customer management systems research and implementation,TP315
- Design to E-learning System in Senior Vocational School Base on Moodle,TP311.52
- Design and Development of Teaching Quality Assessment System Based on Data Mining,TP311.13
- The Research of Insurance Network Marketing of China Insurance Company,F724.6
- The Application of Association Rules Algorithm in Higher Vocational Colleges’ Endorsement of Impoverished Students,G717
CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net Mobile
|