摘要
为了改变传统防火墙静态的缺点,在计算机免疫学原理的指导下,通过借鉴自然免疫系统特征,提出了免疫防火墙模型。该模型是两层结构,第1层采用传统的防火墙技术,第2层是基于免疫原理的免疫层。免疫层采用规则树编码的识别器,通过在self、nonself集上进行学习和识别训练,获得self、nonself的主要特征,产生动态规则,即免疫层的免疫(淋巴)细胞,以自适应的方式阻拦非法数据,并利用演化计算对识别器进行演化。该防火墙模型具有一定的自适应性和动态性。
A new model of firewall is presented according to computer immunology. The structure of this model includes two layers. The first layer is called traditional layer, the second layer is called immune layer. The traditional technology of firewall is used in the first layer. The second layer is based on the principle of computer immunology. The rule tree detector is used in the second layer, selfstudying, producing dynamic rule and solving the flaw of the first layer in self-adaptation way. The rule tree detector is evolved by GA and GE The new model of firewall has the characters of self-adaptation and dynamic.
出处
《计算机工程与设计》
CSCD
2004年第8期1282-1285,共4页
Computer Engineering and Design