首页> 外文期刊>International Journal of Engineering and Technology >EFFICIENT INTRUSION ALERT REDUCTION MECHANISM USING FUZZY ARTMAP
【24h】

EFFICIENT INTRUSION ALERT REDUCTION MECHANISM USING FUZZY ARTMAP

机译:使用模糊Artmap的有效入侵预警减少机制

获取原文
           

摘要

The vast alert generation of IDS in the network is the major problem. It is the vital task to find solutions to reduce the alerts. Novel techniques namely Fuzzy Association rule and Fuzzy art map are proposed to identify attacks optimally and to reduce alerts. The execution time is reduced by placing the level of severity and importance. All alerts that are issued by IDSs are not on the same level of severity and importance. It would be great if the system can identify which alerts are highly important and which are not, so that the number of alerts that need to be dealt with can be reduced. The alert is reduced by finding out the attacks accurately using various methods. The Membership function is used to classify the attack as low, mid or high using continuous attribute. The rules are set for each attack using fuzzy association rule. The chi-square, confidence and support values are estimated for each rule and the minimum value will be set for all parameters .The Rules higher than the verge value are taken and the rules for each generation are updated. Then the rules are compared with test data set and calculated the match degree for each attack. The proposed fuzzy association rule is to obtain superlative features. The Fuzzy art map technique is used to classify the intrusion and normal data by calculating the match degree. Hence this technique aims to effectively reduce the alert rate when compared with existing approaches.
机译:网络中IDS的大量警报生成是主要问题。找到减少警报的解决方案是至关重要的任务。提出了模糊关联规则和模糊艺术图等新技术,以最优地识别攻击并减少警报。通过放置严重性和重要性级别,可以减少执行时间。 IDS发出的所有警报的严重性和重要性都不相同。如果系统能够识别出哪些警报非常重要而哪些不是非常重要,那么可以减少需要处理的警报数量。通过使用各种方法准确地找出攻击,可以减少警报。成员资格功能用于使用连续属性将攻击分类为低,中或高。使用模糊关联规则为每次攻击设置规则。估计每个规则的卡方值,置信度和支持值,并为所有参数设置最小值。采用高于边缘值的规则,并更新每个世代的规则。然后将规则与测试数据集进行比较,并计算每次攻击的匹配度。提出的模糊关联规则是为了获得最高级的特征。模糊艺术地图技术用于通过计算匹配度对入侵数据和正常数据进行分类。因此,与现有方法相比,该技术旨在有效降低警报率。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号