DocumentCode
2565328
Title
A Hybrid Approach for Real-Time Network Intrusion Detection Systems
Author
Lee, Sang Min ; Kim, Dong Seong ; Park, Jong Sou
fYear
2007
fDate
15-19 Dec. 2007
Firstpage
712
Lastpage
715
Abstract
This paper proposes a hybrid approach for real- time Network Intrusion Detection Systems (NIDS). We adopt Random Forest (RF) for feature selection and Minimax Probability Machine (MPM) for intrusion detection. RF provides the variable importance by numeric values so that the irrelevant features can be eliminated. However, the NIDS based on RF is slow to build intrusion detection model. We employ MPM, since MPM has been shown a better performance, compared with RF in terms of model building time. To validate the feasibility, we carry out several times of experiments with KDD 1999 intrusion detection dataset. The experimental results show the proposed approach is faster and more lightweight than the previous approaches while guaranteeing high detection rates so that it is suitable for real-time NIDS.
Keywords
Computer networks; Data security; Intrusion detection; Machine learning algorithms; Minimax techniques; Radio frequency; Real time systems; Support vector machine classification; Support vector machines; Throughput;
fLanguage
English
Publisher
ieee
Conference_Titel
Computational Intelligence and Security, 2007 International Conference on
Conference_Location
Harbin, China
Print_ISBN
0-7695-3072-9
Electronic_ISBN
978-0-7695-3072-7
Type
conf
DOI
10.1109/CIS.2007.10
Filename
4415437
Link To Document