Research on distributed intrusion detection system based on Protocol analysis

Xiaohong Qu,Zhijie Liu,Xiaoyao Xie
DOI: https://doi.org/10.1109/ICASID.2009.5276963
2009-01-01
Abstract:Intrusion detection system is a new safeguard technology for system security after traditional technologies, such as firewall, message encryption and so on. To intrusion detection system, it makes improving efficiency of intrusion detection by choosing better method of intrusion detection, traditional intrusion detection system because of large amount of calculation, the high rate of omissions and misstatem tmts has not already adapted to the needs of the current network system protocol analysis is a kind of key technology for network intrusion detection. The paper which based on that idea will presents a distributed intrusion detection system model based on protocol analysis, it makes processing work very simple using protocol analysis technology in detection module. Compared with other model, the model has obvious advantage by analysing, and it can decrease the rate of FN and enhance the capability of system.
What problem does this paper attempt to address?