针对传统入侵检测技术难以适应大流量、高带宽的动态网络环境的局限性,在对软件人(SM)的基本理论和智能特性研究基础上,受其启发提出了基于群体软件人(MSM)的智能入侵防御系统协作控制模型。模型采取无控制中心的群体软件人分布式体系结构,避免了单个中心分析器带来的单点失效问题;同时该系统还充分利用了软件人智能协商控制机制,有效地解决信任社区内与社区间的协同预警及防御问题,也为网络安全防范提供了新的研究思路。
Through analyzing and studying the characteristics of large-scale network intrusion detection system ( IDS), dis- cussed some crucial disadvantages of the existing IDS briefly. Inspired by the intelligence recognition capability of SM, proposed a novel and visual muhi-softman intrusion prevention system (MSMIPS) cooperation model. In order to reduce the relativity of each detection components as far as possible and avoid the single point failure caused by the single central analyzer, the model is adopted the non-control center muhi-softman(MSM) distributed architecture. At the samd time, MSMIPS enables member sites in the same trust community or different ones to forewarn attacks cooperatively. Thus, MSMIPS had some merits, such as higher detection rate, load balance and better self-adaptabihty, and so on. MSMIPS also provided a novel way for implementa- tion of network security.