This paper discusses how to make use of association rules in IDS audit data analysis. With an improved OPUS algorithm, some tests are done.
讨论了用数据挖掘中的关联规则对IDS审计数据进行分析,给出了一种改进的OPUS算法,并对实验结果进行分析。
So we extend the IDMEF to support audit data report, detection rules distribution, response instruction, and cooperative analysis in the system.
另外,我们对IDMEF进行了扩展,以支持系统中审计数据上报、规则发布、响应指令、协作分析等要求。
Through the tests and the analysis result, confirmed that the use of the data mining theory to the security audit analysis is feasible and effective.
通过对测试结果的分析,验证了将数据挖掘理论融入安全审计分析是可行和有效的。
应用推荐