摘要
分析了现有入侵检测系统的不足,提出了一个基于移动代理的分布式入侵检测系统的模型,对系统中各个组件的功能进行了描述,同时对移动代理的安全问题进行了讨论。该模型采用无控制中心的协作式组件体系结构,完全避免了单点失效问题。移动代理之间各自独立,同时相互通信,协作完成入侵检测任务,真正实现了分布式的检测,增强了系统的灵活性和可扩展性。
The defects of current intrusion detection systems (IDSs) are analyzed. A distributed intrusion detection system model is presented based on the mobile agents, the function of each module in the system is described, and the security problems of mobile agents are discussed. This model adopts the architecture which has no control center, avoids the problem of a single point failure completely. Agents are independent separately, while they can communicate and Cooperate one another to take actions, realizes the distributed detection really, and strengthens flexibility and expansibility of the system.
出处
《计算机工程与设计》
CSCD
北大核心
2006年第18期3328-3330,3363,共4页
Computer Engineering and Design
基金
国家863高技术研究发展计划基金项目(2002AA145090
2005AA145110)。
关键词
网络安全
入侵检测
移动代理
分布式
模型
network security
intrusion detection
mobile agent
distributed
model