• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

J4 ›› 2010, Vol. 32 ›› Issue (12): 22-26.doi: 10.3969/j.issn.1007130X.2010.1

• 论文 • 上一篇    下一篇

基于规划识别的入侵检测研究

蔡增玉1,谷文祥2,甘勇1,刘书如1   

  1. (1.郑州轻工业学院计算机与通信工程学院,河南 郑州 450002;2.东北师范大学计算机学院,吉林 长春 130117)
  • 收稿日期:2009-10-15 修回日期:2009-12-20 出版日期:2010-12-25 发布日期:2010-12-25
  • 通讯作者: 蔡增玉
  • 作者简介:蔡增玉(1979),男,河南鹤壁人,硕士,讲师,研究方向为智能规划和网络安全,CCF会员(E200008965M);谷文祥,教授,博士生导师,研究方向为智能规划与规划识别;甘勇,教授,研究方向为计算机网络与网络安全;刘书如,讲师,研究方向为网络安全。
  • 基金资助:

    国家自然科学基金资助项目(60573067)

Research on the Intrusion Detection Based on Plan Recognition

CAI Zengyu1,GU Wenxiang2,GAN Yong1,LIU Shuru1   

  1. (1.School of Computer and Communication Engineering,Zhengzhou University of Light Industry,Zhengzhou 450002;
    2.School of Computer Science,Northeast Normal University,Changchun 130117,China)
  • Received:2009-10-15 Revised:2009-12-20 Online:2010-12-25 Published:2010-12-25

摘要:

规划识别是人工智能的重要研究分支之一,在入侵检测领域中已有初步的应用。本文在介绍规划识别和入侵检测基本概念的基础上,按照规划识别方法分门别类地研究了基于事件层的规划识别、基于贝叶斯网络的规划识别、基于扩展目标规划图的规划识别、彩色Petri网、对手规划、行为状态图等在入侵检测领域的应用现状和进展;接着深入分析了规划识别和入侵检测的关系和相似之处;最后讨论了基于规划识别的入侵检测存在的问题,并指出了未来的发展趋势。本文综述了智能规划在入侵检测中应用的关键技术和存在的问题,研究内容对于相关人员从事入侵检测研究具有重要的参考价值。

关键词: 智能规划, 规划识别, 入侵检测, 网络安全

Abstract:

Plan recognition is one of the important branches of artificial intelligence,and it has been preliminarily applied in intrusion detection systems(IDSs). The fundamental conception of plan recognition and IDS are introduced firstly. And then it studies on the applications and progresses of plan recognition in IDS according to the classification of plan recognizing methods,such as plan recognition based on event,plan recognition based on the Bayesian network,plan recognition based on the extended goal graph,colored petri net,adversarial planning and action state diagram. Subsequently,the common characteristics of plan recognition and IDS are thorough analyzed. Finally,the development trends and the existing problems of this domain are discussed. This review deals with the key technology and the existing problems of plan recognition implicating in IDS,which is very helpful for the related personnel research in the logistics fields.

Key words: intelligent planning;plan recognition;intrusion detection;network security