首页> 外文会议>Inernational symposium on recent advances in intrusion detection >An Analysis of the 1999 DARPA/Lincoln Laboratory Evaluation Data for Network Anomaly Detection
【24h】

An Analysis of the 1999 DARPA/Lincoln Laboratory Evaluation Data for Network Anomaly Detection

机译:网络异常检测1999年的DARPA /林肯实验室评价数据分析

获取原文

摘要

The DARPA/MIT Lincoln Laboratory off-line intrusion detection evaluation data set is the most widely used public benchmark for testing intrusion detection systems. Our investigation of the 1999 background network traffic suggests the presence of simulation artifacts that would lead to overoptimistic evaluation of network anomaly detection systems. The effect can be mitigated without knowledge of specific artifacts by mixing real traffic into the simulation, although the method requires that both the system and the real traffic be analyzed and possibly modified to ensure that the system does not model the simulated traffic independently of the real traffic.
机译:DARPA / MIT LICOLN实验室离线入侵检测评估数据集是用于测试入侵检测系统的最广泛使用的公共基准测试。我们对1999年背景网络流量的调查表明存在仿真工件,其将导致网络异常检测系统的过度评估。可以通过将实际流量混合到模拟中来减轻效果,尽管该方法要求系统和实际流量都被分析并可能修改,以确保系统无法独立于真实的模拟模拟流量来模拟模拟流量交通。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号