• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

J4 ›› 2011, Vol. 33 ›› Issue (5): 27-31.

• 论文 • Previous Articles     Next Articles

Evaluation of the IDS Capabilities Based on Return Expectations

YANG Zhongming1,WU Yugang1,2,QIN Yong1,CAI Zhaoquan3   

  1. (1.Guangdong University of Petrochemical Technology,Maoming 525000;
    2.Jiangsu University of Science and Technology,Zhenjiang 212003;
    3.Huizhou University,Huizhou 516007,China)
  • Received:2010-06-17 Revised:2010-09-18 Online:2011-05-25 Published:2011-05-06

Abstract:

It has become a hot topic  in the current research of network security to evaluate the effectiveness and reliability of intrusion detection systems effectively with the development of technology and products of intrusion detection. This paper indicates the advantages and disadvantages of some intrusion detection models which are commonly used at present. An optimal reference value is given through analyzing and deriving an intrusion expectation model, which is different from the current problem of velocity and accuracy of the assessment of intrusion detection systems. Meanwhile, the relations of false alarm rate, false negative rate and the product of intrusion rate and intrusion number are given. Therefore, the product of intrusion rate and intrusion number can be given through the relation which is significant for the IDS capabilities evaluation. The feasibility of the return expectationsbased IDS access model in assessing IDS is proved by the experiments of the Matlab software.

Key words: false alarm rate;false negative rate;detection rate;IDS;return expectations