A Network Intrusion Detection System Based on Adaptive Resonance Theory

Da-Xin TIAN,Yan-Heng LIU,Da WEI
DOI: https://doi.org/10.3321/j.issn:0254-4164.2005.11.015
2005-01-01
Jisuanji Xuebao/Chinese Journal of Computers
Abstract:A network intrusion detection system based on adaptive resonance theory (ARTNIDS) is put forward. It detects network intrusions by using anomaly-based detection method. Since the heads of network datagrams include almost all the control information and all datagrams can be caught through an efficient method, the description of network behavior relies upon the datagrams. The advantage of adaptive resonance theory ensures that ARTNIDS can study in real time and in an unsupervised way, which is essential to anomaly-based detection. The modified adaptive resonance theory algorithm improves the efficiency of studying and the datagram missing rate has been reduced from 15% to 10%. A similar Hamming distance method is adopted in the detection, which is effective in reducing false positive errors and false negative errors; the error rate is less than 10%. The experimental results show that the intrusion detection system based on adaptive resonance theory can detect intrusion behavior in local area network accurately.
What problem does this paper attempt to address?