• DocumentCode
    2941428
  • Title

    An Integrated Decision System for Intrusion Detection

  • Author

    Wang Ling ; Xiao Haijun

  • Author_Institution
    Dept. of Bus., Wuhan Inst. of Technol., Wuhan, China
  • Volume
    1
  • fYear
    2009
  • fDate
    18-20 Nov. 2009
  • Firstpage
    417
  • Lastpage
    421
  • Abstract
    As the rapid growth of network attacking tools, patterns of network intrusion events change gradually. Although many researches have been proposed to analyze attackers´ behaviors to improve the detection rate, they still suffer in high false rate in intrusion detection. Therefore, an effective intrusion detection system (IDS) deployment requires carefully planning, preparation, prototyping, testing, and specialized training. So an integrated decision system that consists of three phases was proposed in this paper: Data Preprocessing Phase, Fusion Decision Phase and Data Callback Phase. In Data Preprocessing Phase, two data reduction strategies for IDS are performed efficiently. In Fusion Decision Phase, a dynamic decision and an ensemble technology is designed and performed. In Data Callback Phase, the testing data updated through adding the undetermined data. Our experiment demonstrates that, although the false rate of integrated decision system is not the best of the four approaches discussed, the false rate is so low, its positive rate is the best one of these four, and its training time and decision time is so short that our approach is feasible for online.
  • Keywords
    security of data; support vector machines; data callback phase; data preprocessing phase; fusion decision phase; integrated decision system; intrusion detection; Computer networks; Data preprocessing; Filters; Information security; Internet; Intrusion detection; Mathematics; Multimedia systems; Protection; Testing; The proximal SVM; integrated; intrusion detection; system;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Multimedia Information Networking and Security, 2009. MINES '09. International Conference on
  • Conference_Location
    Hubei
  • Print_ISBN
    978-0-7695-3843-3
  • Electronic_ISBN
    978-1-4244-5068-8
  • Type

    conf

  • DOI
    10.1109/MINES.2009.243
  • Filename
    5371022