- AOI에 기반을 둔 침입탐지시스템의 알람 분석
- ㆍ 저자명
- 정인철,권영식,Jung. In-Chul,Kwon. Young-S.
- ㆍ 간행물명
- 산업공학
- ㆍ 권/호정보
- 2008년|21권 1호|pp.33-42 (10 pages)
- ㆍ 발행정보
- 대한산업공학회
- ㆍ 파일정보
- 정기간행물| PDF텍스트
- ㆍ 주제분야
- 기타
To analyze tens of thousands of alarms triggered by the intrusion detections systems (IDS) a day has been very time-consuming, requiring human administrators to stay alert for all time. But most of the alarms triggered by the IDS prove to be the false positives. If alarms could be correctly classified into the false positive and the false negative, then we could alleviate most of the burden of human administrators and manage the IDS far more efficiently. Therefore, we present a new approach based on attribute-oriented induction (AOI) to classify alarms into the false positive and the false negative. The experimental results show the proposed approach performs very well.