透過您的圖書館登入
IP:3.14.246.254
  • 期刊

Reliable Alert Fusion of Multiple Intrusion Detection Systems

並列摘要


Alert Fusion is a process of combining alerts from multiple Intrusion Detection Systems to make a decision about the presence of attack or intrusion. A reliable decision from an alert fusion requires that Intrusion detectors involved in the fusion process generates fully reliable alerts. The unreliable alerts from intrusion detectors may completely misleads the decision making process. The existing alert fusion operators doesn't incorporate reliability of Intrusion detectors. In this work, we have proposed a novel alert fusion method which overcomes the limitations of existing fusion methods and fulfils the requirements for alert fusion domain. We have demostrated the results for two different approaches of deriving reliability value of intrusion system detector which are based on conflict and true positive rate of intrusion detectors. The results shows the robustness of proposed rule in fusing alerts from multiple intrusion detection system. Our proposed approach shows a drastic reduction in false positive rate without affecting the true positive rate.

並列關鍵字

Alert fusion DARPA99 IDS KDD99 reliability

被引用紀錄


Su, T. F. (2015). 基於多屬性稀疏編碼之人體動作與人臉表情辨識 [doctoral dissertation, National Tsing Hua University]. Airiti Library. https://doi.org/10.6843/NTHU.2015.00343
Weng, C. H. (2013). 串流網路編碼之無線廣播 [master's thesis, National Tsing Hua University]. Airiti Library. https://doi.org/10.6843/NTHU.2013.00701
Ho, K. H. (2012). To XOR or Not to XOR at Relays: Vandermonde Relay-Assisted Network Coding [master's thesis, National Tsing Hua University]. Airiti Library. https://doi.org/10.6843/NTHU.2012.00007
謝宗育(2011)。兩個不同場景下之車輛驗證系統〔碩士論文,國立清華大學〕。華藝線上圖書館。https://doi.org/10.6843/NTHU.2011.00117
Chen, K. Y. (2010). 在非重疊視角多相機下利用傳遞擴充特徵之人員追蹤串接技術 [master's thesis, National Tsing Hua University]. Airiti Library. https://doi.org/10.6843/NTHU.2010.00631

延伸閱讀