摘要
本文对传统网络入侵检测系统的性能影响因素进行了研究和改进,设计并实现了一种通过被动监听方式实时检测网络攻击的高性能分布式入侵检测系统(HDIDS).试验结果表明,与传统的网络入侵检测相比,HDIDS的实时数据处理能力提高了大约3倍.
The performance bottleneck of the traditional network intrusion detection system (NIDS) is investigated in order to design and implement a high-performance distributed intrusion detection system (HDIDS) to detect network intruders by passively monitoring a network link. Experiments indicate that the data processing of our HDIDS is increased by about 3 times more than that of the traditional NIDS.
出处
《北京邮电大学学报》
EI
CAS
CSCD
北大核心
2004年第4期83-86,共4页
Journal of Beijing University of Posts and Telecommunications
基金
国家"863计划"项目(2002AA142020)
关键词
网络安全
分布式入侵检测
性能优化
协议分析
network security
distributed intrusion detection
performance optimizing
protocol analysis