A Network State Based Intrusion Detection Model

  • Authors:
  • Zheng Shan;Peng Chen;Ying Xu;Ke Xu

  • Affiliations:
  • -;-;-;-

  • Venue:
  • ICCNMC '01 Proceedings of the 2001 International Conference on Computer Networks and Mobile Computing (ICCNMC'01)
  • Year:
  • 2001

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper presents a new approach called network state based model to describe intrusionsand attacks. In the model which uses FA theory and can detect unknown attacks, the attacks and intrusions are described by the states and state transitions of network protocols and operation systems. First, the paper shows that the model is feasible for intrusion detection, and then it describes the IDS(Intrusion Detection System) using this model by CIDF(Common Intrusion Detection Framework). Lastly, the network state based model is compared with some other models.