New data fusion model of intrusion detection——IDSFP

Based on multi-sensor data fusion technology,a new intrusion detection data fusion model-IDSFP was pre-sented.The model was characterized by correlating and merging alerts of different types of IDS,generating the measures of the security situation,thus constituting the evidence.Current security situ...

Full description

Saved in:
Bibliographic Details
Main Authors: TIAN Jun-feng, ZHAO Wei-dong, DU Rui-zhong, CAI Hong-yun
Format: Article
Language:zho
Published: Editorial Department of Journal on Communications 2006-01-01
Series:Tongxin xuebao
Subjects:
Online Access:http://www.joconline.com.cn/zh/article/74660830/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841537360153542656
author TIAN Jun-feng
ZHAO Wei-dong
DU Rui-zhong
CAI Hong-yun
author_facet TIAN Jun-feng
ZHAO Wei-dong
DU Rui-zhong
CAI Hong-yun
author_sort TIAN Jun-feng
collection DOAJ
description Based on multi-sensor data fusion technology,a new intrusion detection data fusion model-IDSFP was pre-sented.The model was characterized by correlating and merging alerts of different types of IDS,generating the measures of the security situation,thus constituting the evidence.Current security situation of network was evaluated by applying the D-S evidence theory,and various IDS of network were adjusted dynamically to strengthen the detection of the data which relates to the attack attempt.Consequently,the false positive rate and the false negative rate are effectively reduced,and the detection efficiency of IDS is accordingly improved.
format Article
id doaj-art-d2036b8fb67a4b10985f548dbb407a8e
institution Kabale University
issn 1000-436X
language zho
publishDate 2006-01-01
publisher Editorial Department of Journal on Communications
record_format Article
series Tongxin xuebao
spelling doaj-art-d2036b8fb67a4b10985f548dbb407a8e2025-01-14T08:39:01ZzhoEditorial Department of Journal on CommunicationsTongxin xuebao1000-436X2006-01-0111512074660830New data fusion model of intrusion detection——IDSFPTIAN Jun-fengZHAO Wei-dongDU Rui-zhongCAI Hong-yunBased on multi-sensor data fusion technology,a new intrusion detection data fusion model-IDSFP was pre-sented.The model was characterized by correlating and merging alerts of different types of IDS,generating the measures of the security situation,thus constituting the evidence.Current security situation of network was evaluated by applying the D-S evidence theory,and various IDS of network were adjusted dynamically to strengthen the detection of the data which relates to the attack attempt.Consequently,the false positive rate and the false negative rate are effectively reduced,and the detection efficiency of IDS is accordingly improved.http://www.joconline.com.cn/zh/article/74660830/network securityintrusion detectionalert correlationdata fusionD-S evidence theorysituation analysis
spellingShingle TIAN Jun-feng
ZHAO Wei-dong
DU Rui-zhong
CAI Hong-yun
New data fusion model of intrusion detection——IDSFP
Tongxin xuebao
network security
intrusion detection
alert correlation
data fusion
D-S evidence theory
situation analysis
title New data fusion model of intrusion detection——IDSFP
title_full New data fusion model of intrusion detection——IDSFP
title_fullStr New data fusion model of intrusion detection——IDSFP
title_full_unstemmed New data fusion model of intrusion detection——IDSFP
title_short New data fusion model of intrusion detection——IDSFP
title_sort new data fusion model of intrusion detection idsfp
topic network security
intrusion detection
alert correlation
data fusion
D-S evidence theory
situation analysis
url http://www.joconline.com.cn/zh/article/74660830/
work_keys_str_mv AT tianjunfeng newdatafusionmodelofintrusiondetectionidsfp
AT zhaoweidong newdatafusionmodelofintrusiondetectionidsfp
AT duruizhong newdatafusionmodelofintrusiondetectionidsfp
AT caihongyun newdatafusionmodelofintrusiondetectionidsfp