首页> 外文会议>International symposium on test and measurement >Detection Engine Based on Host System Calls for Distributed Intrusion Detection System
【24h】

Detection Engine Based on Host System Calls for Distributed Intrusion Detection System

机译:基于主机系统要求分布式入侵检测系统的检测引擎

获取原文
获取外文期刊封面目录资料

摘要

A detection and analysis engine based on sequences of host system calls is proposed, which can easily be carried by mobile agents in the distributed multi-agent intrusion detection systems. It has the advantages of the small size, high efficiency, simple mechanism, easy maintenance, dynamically upgrade, fast transportation and easy comprehension. The core spirit of the technique is that sequence of system calls executed by the privileged program is represented as the process vector of the short subsequences.
机译:提出了一种基于主机系统呼叫序列的检测和分析引擎,其可以通过分布式多种代理入侵检测系统中的移动代理容易地携带。它的优点尺寸小,效率高,机制简单,维护方便,动态升级,运输快捷,易于理解。该技术的核心精神是由特权程序执行的系统调用序列表示为短子程的过程向量。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号