J4

• 计算机科学 • Previous Articles     Next Articles

Research of IDS Evaluation Method Based on Bayesian Theory

LI Ruixue1,2, FANG Zhiyi1,2, DAI Zhiming1, YAN Youlai1, XIAO Wei1   

  1. 1. College of Computer Science and Technology, Jilin University, Changchun 130012, China; 2. Key Laboratory of Symbol Computation and Knowledge Engineer of Ministry of Education, Jilin University, Changchun 130012, China
  • Received:2007-10-20 Revised:1900-01-01 Online:2008-09-26 Published:2008-09-26
  • Contact: FANG Zhiyi

Abstract: A fresh IDS evaluation method based on Bayesian theory was proposed, and a more perfect Intrusion Detection System Evaluation System was thus designed and constructed. Meanwhile, the four important indices to evaluate IDS, that is, function index, performance index, security index and user availabilityindex, were established. The specific quantitative analysis about some of the major indices was made, moreover, the process of intrusion and detection was simulated with probability tree. The results show that the presented method can find the optimal balance between the detection rate and false alarm rate of the system.

Key words: network security, intrusion detection, evaluation, Bayesian theory, probability tree, attack, test environment

CLC Number: 

  • TP309