• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

J4 ›› 2011, Vol. 33 ›› Issue (4): 40-44.doi: 10.3969/j.issn.1007130X.2011.

• 论文 • 上一篇    下一篇

基于改进Apriori算法的入侵检测系统研究

崔贯勋,李梁,王柯柯,倪伟,苟光磊   

  1. (重庆理工大学计算机科学与工程学院,重庆 400054)
  • 收稿日期:2010-06-22 修回日期:2010-09-27 出版日期:2011-04-25 发布日期:2011-04-25
  • 作者简介:崔贯勋(1978),男,河南鄢陵人,硕士,实验师,研究方向为数据库及其应用。李梁(1964),男,重庆铜梁人,副教授,研究方向为数据管理和软件工程。王柯柯(1977),女,四川南充人,硕士,讲师,研究方向为计算机应用。倪伟(1982),男,四川遂宁人,助理实验师,研究方向为信息管理。苟光磊(1980),男,重庆人,硕士,实验师,研究方向为人工智能。

Research on an Intrusion Detection System Based on the Improved Apriori Algorithm

CUI Guanxun,LI Liang,WANG Keke,NI Wei,GOU Guanglei   

  1. (School of Computer Science and Engineering,Chongqing University of Technology,Chongqing 400054,China)
  • Received:2010-06-22 Revised:2010-09-27 Online:2011-04-25 Published:2011-04-25

摘要:

本文在对关联规则挖掘中Apriori算法的深入研究和分析的基础上,发现并指出了该算法存在的不足,改进了在由K阶频繁项集生成K+1阶候选项集时的连接和剪枝策略及对事务数据库的处理方式,它在时间和空间上提高了Apriori算法的效率。根据改进后的算法提出了入侵检测方法,该方法实现了规则库的自动更新,极大地提高了系统的安全性和可靠性。实验结果表明,该方法明显提高了频繁项目集的生成效率,入侵检测系统知识规则库的生成效率也得到改善。

关键词: 关联规则, Apriori, 频繁项集, 候选项集, 入侵检测

Abstract:

On the basis of a deep research and analysis of the Apriori algorithm in association rule mining,some shortages of the algorithm are discovered. The strategy of the join step,the prune step and the method of dealing with the transaction database is improved, which improves the efficiency of the Apriori algorithm both in time and space. An intrusion detection method based on the improved algorithm is proposed. The rule library of the system can be updated automatically. The security and the dependability of the system can be greatly improved. The experimental results of the improved algorithm show that the method improves the production efficiency of frequent item sets and the knowledge rule library.

Key words: association rule;apriori;frequent itemset;candidate itemset;intrusion detection