The intrusion detection framework based on data fusion technology

SH Teng,W Zhang,NQ Wu,YM Zhao
2004-01-01
Abstract:This paper presents the three-layer intrusion detection framework. The filtering and preprocessing process of data is performed at layer 1; The detection based on features and rules is carried out at layer 2; And at layer 3, the fusing process of data which results from the layer 1 and the layer2 is implemented. This model is designed by distribution technique. The system is composed of many intrusion detection agents, which complete the detection task together. The model is self-adaptable, that is, it can improve itself to get better effect of detection during using it.
What problem does this paper attempt to address?