• DocumentCode
    2565328
  • Title

    A Hybrid Approach for Real-Time Network Intrusion Detection Systems

  • Author

    Lee, Sang Min ; Kim, Dong Seong ; Park, Jong Sou

  • fYear
    2007
  • fDate
    15-19 Dec. 2007
  • Firstpage
    712
  • Lastpage
    715
  • Abstract
    This paper proposes a hybrid approach for real- time Network Intrusion Detection Systems (NIDS). We adopt Random Forest (RF) for feature selection and Minimax Probability Machine (MPM) for intrusion detection. RF provides the variable importance by numeric values so that the irrelevant features can be eliminated. However, the NIDS based on RF is slow to build intrusion detection model. We employ MPM, since MPM has been shown a better performance, compared with RF in terms of model building time. To validate the feasibility, we carry out several times of experiments with KDD 1999 intrusion detection dataset. The experimental results show the proposed approach is faster and more lightweight than the previous approaches while guaranteeing high detection rates so that it is suitable for real-time NIDS.
  • Keywords
    Computer networks; Data security; Intrusion detection; Machine learning algorithms; Minimax techniques; Radio frequency; Real time systems; Support vector machine classification; Support vector machines; Throughput;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Computational Intelligence and Security, 2007 International Conference on
  • Conference_Location
    Harbin, China
  • Print_ISBN
    0-7695-3072-9
  • Electronic_ISBN
    978-0-7695-3072-7
  • Type

    conf

  • DOI
    10.1109/CIS.2007.10
  • Filename
    4415437