作者: Tao Wan , Xue Dong Yang
DOI: 10.1109/ACSAC.2001.991516
关键词:
摘要: An intrusion detection system (IDS), that monitors passively specific computing resources, and reports anomalous or intrusive activities, is becoming an important component in the security of information infrastructure. Algorithms for detecting intrusions are under rapid development, but far from being mature. One interesting difficult issue how to study test a new algorithm against variety (perhaps simulated) activities realistic background traffic. A flexible general-purpose platform testing algorithms clearly desirable. This paper presents such software platform, called IntruDetector. With this can be tested directly real environment with wide range activities. The data normal collected live environment, mixed simulated by hybrid simulation. main properties approach are: (1) traffic realistic; (2) it allows simulation various types intrusions; (3) operation will not disrupted virtually destructive during testing.