提出了一个适用于入侵检测系统的通用数据模型,并分析了该模型的存储结构及其在入侵检测领域中的应用。该模型用基特征和类特征的自然连接表示一类事件,采用二元存储结构,充分考虑到各类事件的共有特征和个体特征,解决了分布式入侵系统中事件的多样性问题。关键词:入侵检测,数据模型,二元,分布式入侵检测系统Abstract: A binary general data model for IDS is proposed, and the application of which is also analyzed. The model denote a type of event by the natural join of base signature and class signature. It can give a standard format of event in DIDS because it looks after both common features and individual features of event.Keywords:ID,data model,binary, DIDS
猜您喜欢
评论