对一种基于Multi-agent的动态协同入侵检测模型进行了定义,对检测代理之间的协作机制及其安全性以及检测代理之间的通信机制及其安全性进行了分析和讨论,并在此基础上给出了该模型的协同检测算法.检测代理的分层组织结构便于对协同检测进行管理和控制;协调代理进行协同检测前通过加锁操作来保证代理之间协作的安全性;检测代理通信时通过身份验证来保证代理之间通信的安全性.该模型的协同机制和安全措施提高了入侵检测的准确性.
In this paper,a dynamic collaborative intrusion detection model based on multi-agent is defined,the collaboration mechanism between the detection agents and its security,communication mechanism between the detection agents and its security are analyzed and discussed.On the basis,the collaborative detection algorithm of this model is given.The hierarchical organizational structure of the detection agents facilitates the management and control of the collaborative detection;the coordination agents ensure the security of collaboration between agents by the locking operation before collaborative detection;the coordination agents ensure the security of communication between agents through authentication during communication.The collaborative mechanisms and security measures of this model improve the accuracy of the intrusion detection.