论文部分内容阅读
入侵检测系统(IDS)作为一门新兴的安全技术,是网络安全系统中的重要组成部分。本文阐述了入侵检测系统的基本原理,从入侵检测系统的类型划分这个角度,分析和比较了基于主机和基于网络两种数据源及基于误用和基于异常两种检测方法的优缺点。并对入侵检测系统的现状及存在的问题进行综述,最后,对入侵检测系统的未来发展方向进行了讨论。
Intrusion Detection System (IDS) as an emerging security technology is an important part of network security system. This paper describes the basic principles of intrusion detection system. Based on the classification of intrusion detection system, this paper analyzes and compares the advantages and disadvantages of both host-based and network-based data sources and misuse-based and anomaly-based detection methods. The current situation and existing problems of intrusion detection system are reviewed. Finally, the future development of intrusion detection system is discussed.