Anti-intrusion detection system based on Snort engine and adopting logistic regression algorithm

The invention discloses an anti-intrusion detection system based on a Snort engine and adopting a logistic regression algorithm. The anti-intrusion detection system comprises a preprocessing module, a detection module, an alarm module, a rule generation module and a rule base, the preprocessing modu...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: HOU HEMING, LIAO QIUXIANG, WU FAN, WU JIANGXIONG, GUI HAITAO, QIN LIWEN, CHENG XIANGHUI, LUO YUTENG, YANG XIN
Format: Patent
Sprache:chi ; eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:The invention discloses an anti-intrusion detection system based on a Snort engine and adopting a logistic regression algorithm. The anti-intrusion detection system comprises a preprocessing module, a detection module, an alarm module, a rule generation module and a rule base, the preprocessing module preprocesses the data packet and sends a preprocessing result to the detection module; the detection module identifies and distinguishes the preprocessing result, and sends the abnormal data packet marked with the feature tag to a rule base for matching judgment; the rule base performs matching judgment on the abnormal data packets marked with the feature tags, sends a matching judgment result to an alarm module, and sends the abnormal data packets which are not successfully matched and marked with the feature tags to a rule generation module; the alarm module gives an alarm according to a matching judgment result; and the rule generation module extracts and converts the abnormal data packets which are not succe