Intrusion Detection System Based on Association Rules

ZHANG Yi,LIU Yan-heng,TIAN Da-xin,LI Chuan-chuan,WANG Yuan
DOI: https://doi.org/10.3969/j.issn.1671-5896.2006.02.017
2006-01-01
Abstract:To improve the intelligence,precision and efficiency of IDS(Intrusion Detection System),the paper applies data mining technology to IDS according to the characteristics of the system.It describes how to acquire the intrusion knowledge from the logs and detect the intrusion behaviors based on the improved association rules algorithm.The results of experiments show that the precision of IDS,using the improved algorithm on a certain log is increased by 45 percent and the efficiency is increased by 50 percent.The optimized algorithm actually improves the performance of IDS.
What problem does this paper attempt to address?