首页> 外国专利> An Anomaly Detection Method for Network Intrusion Detection

An Anomaly Detection Method for Network Intrusion Detection

机译:一种网络入侵检测的异常检测方法

摘要

PURPOSE: A method of performing anomaly detection for network invasion detecting is provided to detect anomaly network packets by using a clustering based on similarity between feature vectors, so as to develop a more efficient invasion detecting system. CONSTITUTION: A network invasion detecting system performs a clustering by using network packet sets for a test(11). The detecting system receives network packets through a network device. The detecting system extracts a feature vector from the packets(12). The detecting system selects a cluster having the most similarity with the extracted vector among existing clusters(13). The detecting system confirms whether the similarity value is bigger than a given threshold value(14). The detecting system receives the feature vector of the packet that is decided as normal, and re-preforms a clustering between feature vectors.
机译:目的:提供一种用于进行网络入侵检测的异常检测的方法,以基于特征向量之间的相似度,通过聚类的方法检测网络异常包,从而开发出更高效的入侵检测系统。构成:网络入侵检测系统通过使用网络数据包集进行测试来进行聚类(11)。该检测系统通过网络设备接收网络分组。检测系统从分组中提取特征向量(12)。该检测系统在现有聚类中选择与提取的向量最相似的聚类(13)。检测系统确认相似度值是否大于给定阈值(14)。检测系统接收被确定为正常的分组的特征向量,并且重新执行特征向量之间的聚类。

著录项

  • 公开/公告号KR20020024508A

    专利类型

  • 公开/公告日2002-03-30

    原文格式PDF

  • 申请/专利权人 NEXPOP;

    申请/专利号KR20000056317

  • 发明设计人 LEE DO HEON;

    申请日2000-09-25

  • 分类号H04L12/24;

  • 国家 KR

  • 入库时间 2022-08-22 00:31:20

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号