首页> 外文会议>IEEE Symposium on Computational Intelligence for Security and Defense Applications (CISDA 2009) >Analysis of the 1999 DARPA/Lincoln Laboratory IDS evaluation data with NetADHICT
【24h】

Analysis of the 1999 DARPA/Lincoln Laboratory IDS evaluation data with NetADHICT

机译:使用NetADHICT分析1999 DARPA /林肯实验室IDS评估数据

获取原文

摘要

The 1999 DARPA/Lincoln Laboratory IDS Evaluation Data has been widely used in the intrusion detection and networking community, even though it is known to have a number of artifacts. Here we show that many of these artifacts, including the lack of damaged or unusual background packets and uniform host distribution, can be easily extracted using NetADHICT, a tool we developed for understanding networks. In addition, using NetADHICT we were able to identify extreme temporal variation in the data, a characteristic that was not identified in past analyses. These results illustrate the utility of NetADHICT in characterizing network traces for experimental purposes.
机译:1999 DARPA /林肯实验室IDS评估数据已被广泛用于入侵检测和网络社区,尽管它已知有许多工件。在这里,我们表明,使用NetADHICT(我们开发的用于理解网络的工具),可以轻松提取其中的许多工件,包括缺少损坏的或异常的背景数据包以及统一的主机分布。另外,使用NetADHICT,我们能够识别数据中的极端时变,这是过去分析中未发现的特征。这些结果说明了NetADHICT在表征用于实验目的的网络跟踪中的实用性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号