充分利用移动Agent的特性和适应性免疫原理,提出一种基于适应性免疫和移动Agent的轻量级网络入侵检测算法.算法将入侵检测部件定义为检测Agent,检测Agent能根据迁移策略迁移到各主机,利用适应性免疫原理很好地实现网络入侵检测和响应处理.仿真实验证明:算法不仅检测能力强、误报率低、网络负载小,且可通过配置系统参数和接种检测子,提高了算法的灵活性和扩展性.
With the introduction of Mobile Agent and Adapitive immune principle, propose a distributed and lightweight algorithm based mobile agent and adapitive immune, the algorithm define intrusion detection components as detection Agent. Detection Agent can move to the host by Migration Strategy, and can detect primely intrusion by Adapitive Immune principle. Theoretical analysis and experimental results show that the algorithm possesses higher efficiency and high veracity with better self-adaptablity and expansibility and agility.