入侵检测系统是重要的信息安全措施。对目前入侵检测系统的研究状况进行了总结分析,指出了入侵检测系统的最新发展及出现的新特点,重点分析了智能化技术的应用、数据融合和报警关联技术的引入、检测对象变化情况及与其它安全技术的协作性;阐述了对入侵检测系统的测试评估方面的最新发展情况;最后,展望了入侵检测系统发展的方向。
Intrusion detection system is an important means for information security. In this paper, current situation of researches on intrusion detection system was summarized and analysed, and the new development in the system as well as its new characters are pointed out, the emphases are put on the application of intelligent technology, the introduction of data fusion technology and alerts correlation technique, the variation of detective objects and the collaboration with other security technologies. Moreover,the latest progress in testing and evaluation of the system is expounded. Finally, the direction of future researches in this area is addressed.