Alert correlation using support vector machine for multi intrusion detection systems
- Authors
- Ye, X.; Han, M.-M.
- Issue Date
- 2018
- Publisher
- Little Lion Scientific
- Keywords
- Alert correlation; Intrusion detection system(IDS); Support vector machine (SVM)
- Citation
- Journal of Theoretical and Applied Information Technology, v.96, no.2, pp.400 - 407
- Journal Title
- Journal of Theoretical and Applied Information Technology
- Volume
- 96
- Number
- 2
- Start Page
- 400
- End Page
- 407
- URI
- https://scholarworks.bwise.kr/gachon/handle/2020.sw.gachon/4309
- ISSN
- 1992-8645
- Abstract
- This paper presents a new alert correlation model for multiple intrusion detection systems. Based on the analysis of the complex relationship between the alert information of the intrusion detection system, an alert fusion model is proposed and used to alert correlation. The SVM algorithm has an advantage in the multidimensional classification, which can further reduce the influence of false positives and false negatives. The experimental results show that the alert fusion model has high accuracy and low false positive. © 2005 – ongoing JATIT & LLS.
- Files in This Item
- There are no files associated with this item.
- Appears in
Collections - IT융합대학 > 소프트웨어학과 > 1. Journal Articles
Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.