Research and Improvement of Adjustment Algorithm of Matching Rules of Intrusion Detection

被引:0
|
作者
Zhou, Yan-Sen [1 ]
Yang, Jin-Ran [1 ]
机构
[1] Univ Int Relat, Dept Informat Sci & Technol, Beijing, Peoples R China
关键词
real time; intrusion detection; matching rules; static adjust; dynamic adjust;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Adjustment of Array sequence of matching rules can improve performance of network intrusion detection system. Firstly, This paper introduces static adjustment algorithm, which makes the most frequently used rules in the top of the list of rules, and reduces the frequency and time of following data packets; Secondly, two dynamic adjustment algorithms are designed and accomplished, which are algorithm of dynamic adjustment of matching rules based on variable sampling time T and algorithm of real-time adjustment based on matching trigger of feature event, the Former keeps the matching rule order consistent with the current network flow and adjust the sampling time T according to the number of network flow, the latter adopts three-step dynamical adjustment method to adjust rules sequence when intrusion happens. The experiment shows that the match performance of three-step dynamical adjustment algorithm has been significantly improved than other two adjust algorithms.
引用
收藏
页码:372 / 379
页数:8
相关论文
共 50 条
  • [1] Research of Dynamic Adjustment Algorithm of Matching Rule Database of Network Intrusion Detection
    Zhou, Yan-sen
    Wang, Yong-hao
    [J]. 2011 INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING AND MULTIMEDIA COMMUNICATION, 2011, : 131 - 134
  • [2] IMPROVEMENT OF ALGORITHM FOR PATTERN MATCHING IN INTRUSION DETECTION
    Zhao, Dongcan
    Zhu, Xiaomin
    Xu, Tong
    [J]. 2013 5TH IEEE INTERNATIONAL CONFERENCE ON BROADBAND NETWORK & MULTIMEDIA TECHNOLOGY (IC-BNMT), 2013, : 281 - 284
  • [3] Improvement on Rules Matching Algorithm of Snort Based on Dynamic Adjustment
    Zhao, Kuo
    Chu, Jianfeng
    Che, Xilong
    Lin, Lin
    Hu, Liang
    [J]. 2008 2ND INTERNATIONAL CONFERENCE ON ANTI-COUNTERFEITING, SECURITY AND IDENTIFICATION, 2008, : 285 - 287
  • [4] Research and Improvement of Pattern Matching Algorithmic of Intrusion Detection
    Zhou, Yan-sen
    Wang, Yong-hao
    [J]. 2011 INTERNATIONAL CONFERENCE ON SOFTWARE ENGINEERING AND MULTIMEDIA COMMUNICATION, 2011, : 127 - 130
  • [5] Improvement of Association Rules Mining Algorithm in Wireless Network Intrusion Detection
    Ye Changguo
    Zhang Qin
    Zhou Jingwei
    Wei Nianzhong
    Zhu Xiaorong
    Wang Tailei
    [J]. PROCEEDINGS OF THE 2009 INTERNATIONAL CONFERENCE ON COMPUTATIONAL INTELLIGENCE AND NATURAL COMPUTING, VOL II, 2009, : 413 - +
  • [6] RESEARCH AND IMPROVEMENT OF AC ALGORITHM FOR NETWORK INTRUSION DETECTION SYSTEM
    Xie, Yong
    [J]. INTERNATIONAL SYMPOSIUM ON COMPUTER SCIENCE & TECHNOLOGY, PROCEEDINGS, 2009, : 151 - 153
  • [7] The Research on the Application of Association Rules Mining Algorithm in Network Intrusion Detection
    Ye Changguo
    Wei Nianzhong
    Wang Tailei
    Zhang Qin
    Zhu Xiaorong
    [J]. PROCEEDINGS OF THE FIRST INTERNATIONAL WORKSHOP ON EDUCATION TECHNOLOGY AND COMPUTER SCIENCE, VOL II, 2009, : 849 - +
  • [8] The Research and Amelioration of Pattern-matching Algorithm in Intrusion Detection System
    Wu, Pei-fei
    Shen, Hai-juan
    [J]. 2012 IEEE 14TH INTERNATIONAL CONFERENCE ON HIGH PERFORMANCE COMPUTING AND COMMUNICATIONS & 2012 IEEE 9TH INTERNATIONAL CONFERENCE ON EMBEDDED SOFTWARE AND SYSTEMS (HPCC-ICESS), 2012, : 1712 - 1715
  • [9] Research of pattern matching in intrusion detection
    Huang, JC
    Tian, JF
    Du, RZ
    Zhai, JQ
    [J]. 2003 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND CYBERNETICS, VOLS 1-5, PROCEEDINGS, 2003, : 1877 - 1882
  • [10] Research on the Improvement of Apriori Algorithm and Its Application in Intrusion Detection System
    Zheng, Jigang
    Yang, Lin
    [J]. 2015 IEEE INTERNATIONAL CONFERENCE ON COMPUTER AND COMMUNICATIONS (ICCC), 2015, : 105 - 108