The intrusion detection in networks is studied in the thesis. Firstly, the development situation and the existing problems in the field of the intrusion detection are analyzed. Thereby the dominating factors to affect the information of the Intrusion Detection System (IDS) are carried out, it is too difficult to obtain a perfect conclusion based on a detection information without considering another different detection information. Secondly, to solve the problem, a model of IDS based on information fusion theory is designed, the multisensor detection information for the same object is obtained, the object matching for information fusion is completed, and then the current detection information is associated with the previous information based on the information fusion theory, therefore the fused detection information is obtained by using the Dempster-Shafer evidence composition algorithm. Finally, the feasibility to use the evidence reasoning into IDS is validated according to the simulation results. The simulation results indicate that the IDS based on information fusion can not only decrease the information redundancy, butalso increase the detection veracity and reduce the misinformation of the system, meanwhile it has the error tolerance capacity. Therefore, there is a wide application foreground for the IDS with information fusion.
|