论文部分内容阅读
伴随着计算机的广泛使用和网络技术的快速发展,信息保密性和网络安全性也变得越来越重要。网络安全事件流中异常检测作为一种主动性的检测技术,不仅可以检测来自外部的入侵行为,还可以检测出内部用户的非授权行为,这已经成为网络安全技术中一个非常重要的组成部分。在数据挖掘和入侵检测理论的基础上,提出一种基于网络数据关联规则的网络异常检测模型,采用数据关联算法网络连接记录分析,通过网络通信中IP网络规模的扩大,以提供和保证网络联通性为主要目标的网络数据信息服务和网络安全检测。
With the widespread use of computers and the rapid development of network technology, information confidentiality and network security are becoming more and more important. As an active detection technique, anomaly detection in network security event flow can not only detect the intrusion from the outside but also detect the unauthorized behavior of internal users, which has become a very important part of the network security technology. Based on the theory of data mining and intrusion detection, this paper proposes a network anomaly detection model based on network data association rules, and uses data association algorithm to record and analyze network connection. Through the expansion of IP network in network communication, it provides and guarantees network connectivity As the main goal of network data information services and network security testing.