论文部分内容阅读
在分析现有基于Agent的入侵检测系统的基础上,提出了一种基于Agent的DIDS(Distributed Intrusion Detection System,分布式入侵检测系统)模型,系统采用分布检测,分布处理的模式,通过多Agent技术的思想建立DIDS整体结构,用Agent实现不同的功能单元,给出了模型的各个组成部分,并对模型中各种Agent的功能设计和实现原理进行了分析;尽管Agent的相关理论和系统有待发展与完善,但由于网络系统的分布式的特点以及网络应用的发展,基于Agent的检测框架应是未来IDS发展的重要方向。
Based on the analysis of the existing agent-based intrusion detection system, a DIDS (Distributed Intrusion Detection System) model based on Agent is proposed. The system adopts distributed detection and distributed processing mode, , Establishes the overall structure of DIDS, realizes different functional units with Agent, gives out the various components of the model, and analyzes the functional design and implementation principles of various Agents in the model. Although the relevant theories and systems of Agent need to be developed And perfect, but because of the distributed characteristics of network system and the development of network applications, Agent-based detection framework should be an important direction for the future development of IDS.