摘要
由于现在网络攻击的复杂性和多样性,迫使网络入侵检测系统产品需要从一个简单机械的产品发展成为智能化的产品。基于人工免疫理论的入侵检测系统是一种根据自然免疫原理法则、具有智能的入侵检测系统。首先介绍入侵检测系统的发展情况,并针对当前入侵技术在检测入侵的不足,系统地介绍了生物免疫系统的组成、功能,以及免疫系统的两大理论自我/非我理论和危险理论的内容。从而根据免疫空间模型,提出了一种基于危险理论的免疫系统模型及算法,将其应用到网络入侵系统中,最后基于KDD—CUP99数据库的实验验证了系统的有效性。
Due to the complexity and variety of the network attack, the performance of Intrusion Detection System (IDS) has to beupgraded from a simple machine product to an intellectualized product. The IDS based on artificial immune theory is an intelligent intrusion detection system originated from natural immune theory. The article firstly introduces the development of IDS and the insufficiencies of the current intrusion technology in detecting intrusion, then gives a systematic overview of natural immune system's composition, function, and two major theories Self/Non - Self (SNS) and Danger Theory (DT) in the immune system. Therefore, based on immune space model, it puts forward an immune system model and the algorithm based upon DT, and applies it to the network intrusion system. Finally, the system's validity is demoustrated by the experimental resalts with KDD--CUP99 database.
出处
《计算机仿真》
CSCD
北大核心
2010年第6期159-162,190,共5页
Computer Simulation
关键词
网络安全
入侵检测
人工免疫
危险理论
自我/非我理论
Network security
Intrusion detection
Artificial immune
Danger theory
Self/non - self theory