Title :
Storage-Based Anomaly Intrusion Detection Technology Based on D-S Evidence Theory
Author :
Xue, Jingfeng ; Zhao, Fengnian ; Zhao, Xiaolin ; Shu, Gang
Author_Institution :
Sch. of Software, Beijing Inst. of Technol., Beijing
Abstract :
The storage operation of normal process in host system is analyzed and an anomaly intrusion detection method based on d-s evidence theory for storage system is proposed. The detector fuses multiple signatures of storage data to decide whether the storage operation flow is normal. Furthermore, six groups of light-computation signatures of storage operation data are used to develop an efficient fusion mechanism to guarantee high performance of the algorithm. Experiment shows that high detection rate can be achieved by such fusion.
Keywords :
computational complexity; security of data; d-s evidence theory; light-computation signatures; storage data; storage operation flow; storage system; storage-based anomaly intrusion detection; Computational complexity; Detection algorithms; Detectors; Fuses; Galois fields; Intrusion detection; Probability; Quantization; Statistics; Uncertainty;
Conference_Titel :
Computer and Electrical Engineering, 2008. ICCEE 2008. International Conference on
Conference_Location :
Phuket
Print_ISBN :
978-0-7695-3504-3
DOI :
10.1109/ICCEE.2008.146