计算机工程与应用 ›› 2016, Vol. 52 ›› Issue (14): 115-118.

• 网络、通信与安全 • 上一篇    下一篇

结合遗传算法的NIDS多媒体包多线程择危模型

赵  旭,王  伟   

  1. 西安工程大学 计算机科学学院,西安 710048
  • 出版日期:2016-07-15 发布日期:2016-07-18

Multithreading model for multimedia packets in NIDS based on genetic algorithm

ZHAO Xu, WANG Wei   

  1. School of Computer Science, Xi’an Polytechnic University, Xi’an 710048, China
  • Online:2016-07-15 Published:2016-07-18

摘要: 当网络流量超出网络入侵检测系统(NIDS)负载能力时,漏检将不可避免,此时应选择较危险的数据包优先处理。因多媒体数据包在流量中所占比例较大,故曾提出对其识别和特殊处理的方法,收效良好。在此基础上,提出结合遗传算法的NIDS多媒体包多线程择危模型,该模型能在漏检发生时,根据不同线程的最大处理能力,按照多媒体数据包的危险程度择危优先处理。实验结果表明,使用该模型能够有效提高NIDS在每个线程内所选择的多媒体数据包序列的危险系数。

关键词: 网络入侵检测系统, 多媒体数据包, 遗传算法, 择危模型

Abstract: Omission is inevitable, when the network traffic exceeds the load capacity of Network Intrusion Detection System(NIDS). In this case, dangerous packets should be given priority to processing. The author proposed an identifying method and two particular processing methods for multimedia packets since the multimedia packets occupy a larger proportion in network flow. On this basis, this paper proposes a multithreading model for multimedia packets in NIDS based on the genetic algorithm. When omission occurs, this model can choose more dangerous multimedia packets for processing within the maximum processing capacity of different threads. Experimental results indicate that this model can help NIDS to improve its selection ability for dangerous multimedia packets effectively.

Key words: Network Intrusion Detection System(NIDS), multimedia packets, genetic algorithm, model of choosing danger