摘要
针对数据过滤问题提出了一种网络状态分析方法,该方法从恶意数据流中提取二维特征,经过数值加权把这二维特征整合为观测数据,建立了一个对恶意数据流敏感的隐马尔可夫模型,最后以各种网络数据集为例对其应用情况进行了分析。
At present, the network-based intrusion detection systems generally directly processes the network data stream. The malicious traffic in network usually occupies the flux lower than 1 %. Facing the data ocean in network, how the NIDS to filter the data is an important problem. This article proposes the network state analysis method in view of data filtration question. This method extracts the two-dimensional feature from the malicious data stream, creates the observation data by numerically weighting for the two-dimensional feature, establishes a hidden Markov model which is sensitive to the malicious data stream. Finally it takes each kind of network data set as example to analyze their application situation.
出处
《山西电子技术》
2009年第4期61-63,共3页
Shanxi Electronic Technology