摘要
提出了一种基于特征匹配模块和层次知识库的IDSPMHKR系统模型,在其中加入历史规则和方法,根据最近访问出现次数较多的规则在不久的将来出现的频度也会较高的特点,设计了IDSPMHKR的层次知识库用来在最短的时间内发现入侵规则,以提高入侵检测系统的实时性;采用KMP算法进行入侵规则的模式匹配,可以降低查找时间,提高系统的综合性能.
A model of the IDS based on the pattern match and the hierarchical knowledge repository is put forward. And with the history rules and methods added, according to the characteristics of the rules that the visiting frequency is high at present and the visiting frequency in the near future will remain high, the authors have designed the hierarchical knowledge repository of the IDSPMHKR in order to detect the intrusion as quick as possible. Using the KMP algorithm to do the pattern match can lower the time of the pattern search and enhance the system performance.
出处
《平顶山学院学报》
2009年第2期109-111,128,共4页
Journal of Pingdingshan University
关键词
入侵检测
模式匹配
层次知识库
intrusion detection
pattern match
hierarchical knowledge repository