Maids _ station provide the running environment to detection agent Maidsstation端提供移动检测代理aglet的支撑环境。
The agent system of a _ dids consists of four modules : monitor agent , state detection agent , intrusion detection agent and auto response agent . every agent works independently and together to accomplish intrusion detection A _ dids的代理体系由监控代理、状态检测代理、入侵检测代理和自动响应代理组成,代理之间各自独立又相互协作,合作完成入侵检测的任务。
5 ) we describe the design and implemention of an agent - based network intrusion detection prototype system . this prototype implements a network agent in linux platform which is compound of cooperative detection agent and communication agent , and a remote agent console in windows 2000 platform 原型中实现了基于linux的网络型代理,它由通信代理和检测代理两部分共同协作组成;原型还在windows2000下实现了远程代理控制台。
Then , we can compare the current action pattern with the pattern in the pattern database to find out the known or unknown misuse intrusions and anomaly intrusions . the system model is extensible for adding new intrusion detection agents or new intrusion models . it adopts data mining technology to cut down the dependency of manual encoding and expert experience 这些模式可用来指导系统属性的选择和构造,挖掘生成出有用的系统或者用户的行为模式(正常的或者异常的) ;通过比较当前的系统行为模式和已有的模式规则的相似度来发现已知或者未知的误用入侵和异常入侵活动。