为了提高异常检测系统的实时性能,在尽可能短的时间内对出现的异常做出反应,对传统的树突状细胞算法的离线分析过程进行了改进,提出了一种实时分析算法。当抗原被足够多的树突状细胞提呈后立即输出评估结果,从而到达实时或接近实时分析的目的,足够的评判次数减少了误判的影响,与时间序列相关的抗原信号池消除了无关数据的相互干扰,和生物免疫相关的一些随机因素的考虑更加近似地模拟了生物系统的表现。实验结果表明,该算法在实时分析的基础上还具有可观的检测精度。
To perform the anomaly detection in real time, continuously detect abnormal behaviors as soon as they occur, a real- time analysis algorithm is put forward to improve the offline analysis of the classical dendritic cell algorithm. When an antigen is presented by sufficient dendritic cells, it will be immediately assessed and output, thus the purpose of real-time or near-to real- time analysis can be achieved. Sufficient assessments can reduce the influence of the errors, the antigen and signal pool of tempo- ral correlation is designed to eliminate the mutual interference of the antigens and signals which are far apart, and the considera- tion of some random factors immune-inspired will make the algorithm much more similar to the biological system. The results of the experiments show that the real-time analysis algorithm proposed has the considerable detection accuracy.