Computer and Modernization ›› 2010, Vol. 1 ›› Issue (10): 170-173.doi: 10.3969/j.issn.1006-2475.2010.10.046

• 信息安全 • Previous Articles     Next Articles

A Network Intrusion Detection Model Based on Protocol Analysis and Immunological Principle

GENG Jun-cheng, NIU Shuang-xia, MO Jian-song   

  1. Henan Electric Power Research Institute, Zhengzhou 450052, China
  • Received:2010-04-20 Revised:1900-01-01 Online:2010-10-21 Published:2010-10-21

Abstract: With theoretical analysis of protocol analysis and biological immunity system, this paper presents a new intrusion detection model based on protocol analysis and immunological principle. The model can sort the set of detectors according to the protocol type, and generate the relevant subsets of the detectors. Designing a new detector structure can sort the detectors further. The detectors of each subset can mutate, evolve alone and the whole detectors update based on subset. In practical detection, the patterns to be detected match the relevant subset of the detectors, so the detection speed can be effectively improved, making up the deficiency of past modes.

Key words: intrusion detection, immune theory, protocol analysis, subset of detectors

CLC Number: