中国科学院软件研究所机构知识库
Advanced  
ISCAS OpenIR  > 软件所图书馆  > 期刊论文
Subject: Computer Science
Title:
基于D-S证据理论的主机违规行为检查方法
Alternative Title: host violation check method based on d-s evidence theory
Author: 王斌 ; 连一峰 ; 陈恺
Keyword: D-S evidence theory ; Host violation ; Anomaly detection
Source: Computer Applications and Software
Issued Date: 2012
Volume: 29, Issue:2, Pages:90-93,148
Indexed Type: cscd,cnki,wanfang
Department: 王斌, 中国科学院软件研究所, 信息安全国家重点实验室;;信息网络安全公安部重点实验室;;信息安全共性技术国家工程研究中心, 北京 100190, 中国. 连一峰, 中国科学院软件研究所, 信息安全国家重点实验室;;信息安全共性技术国家工程研究中心, 北京 100190, 中国. 陈恺, 中国科学院软件研究所, 信息安全国家重点实验室;;信息安全共性技术国家工程研究中心, 北京 100190, 中国.
Abstract: 主机违规行为是能对主机及其所在信息系统的安全造成影响,或泄露主机上的重要信息的行为。提出一种主机违规检查方法,针对主机违规行为证据信息进行单一证 据源基础概率判定,并通过D-S证据理论对其进行融合,计算得到主机行为的违规系数,以此作为违规检查的判定依据。实验表明,该方法能够满足主机违规检查 工作的应用需求,具有较低的误报率和漏检率。
English Abstract: Host violation is a such behaviour that it either breaks the security of the host and its information system or reveals the important information on the host.In this paper,a host violation checking method is proposed,which discriminates the underlying probability of single evidence resource aiming at the evidence information of each violation of host independently,and then fuses them based on D-S evidence theory,and attains violation coefficient of the host behaviour according to calculation,that will be considered as the discrimination basis for violation checking.Experiments indicate that by using this method,the application demand in host violation checking is able to be met with lower false alarm rate and missing rate.
Language: 中文
Content Type: 期刊论文
URI: http://ir.iscas.ac.cn/handle/311060/14683
Appears in Collections:软件所图书馆_期刊论文

Files in This Item:
File Name/ File Size Content Type Version Access License
基于D-S证据理论的主机违规行为检查方法.pdf(645KB)----限制开放 联系获取全文

Recommended Citation:
王斌,连一峰,陈恺. 基于D-S证据理论的主机违规行为检查方法[J]. Computer Applications and Software,2012-01-01,29(2):90-93,148.
Service
Recommend this item
Sava as my favorate item
Show this item's statistics
Export Endnote File
Google Scholar
Similar articles in Google Scholar
[王斌]'s Articles
[连一峰]'s Articles
[陈恺]'s Articles
CSDL cross search
Similar articles in CSDL Cross Search
[王斌]‘s Articles
[连一峰]‘s Articles
[陈恺]‘s Articles
Related Copyright Policies
Null
Social Bookmarking
Add to CiteULike Add to Connotea Add to Del.icio.us Add to Digg Add to Reddit
所有评论 (0)
暂无评论
 
评注功能仅针对注册用户开放,请您登录
您对该条目有什么异议,请填写以下表单,管理员会尽快联系您。
内 容:
Email:  *
单位:
验证码:   刷新
您在IR的使用过程中有什么好的想法或者建议可以反馈给我们。
标 题:
 *
内 容:
Email:  *
验证码:   刷新

Items in IR are protected by copyright, with all rights reserved, unless otherwise indicated.

 

 

Valid XHTML 1.0!
Copyright © 2007-2019  中国科学院软件研究所 - Feedback
Powered by CSpace