5Soft Computing-Based Intrusion Detection System With Reduced False Positive Rate
Dharmendra G. Bhatti1* and Paresh V. Virparia2
1 Uka Tarsadia University, Bardoli, Gujarat, India
2 Sardar Patel University, Vallabh Vidyanagar, Gujarat, India
Abstract
Intrusion Detection System is one of the important security mechanisms in today’s information era. Two different approaches are used for intrusion detection: signature based and anomaly based. Signature based Intrusion Detection System is able to identify known attacks only whose signatures are available. While anomaly based Intrusion Detection System suffers from problem of high false alarms. Intrusion detection analyst need to address all alerts generated by Intrusion Detection System. If most of these alerts are false, then it is difficult for Intrusion detection analyst to identify real attack and act on it. In our research work we have designed solution to reduce false alerts generated by anomaly based Intrusion Detection System.
Keywords: Network security, intrusion detection system, false positive, soft computing, neural network, genetic algorithm
5.1 Introduction
Intrusion detection is defined as the process of monitoring computer system or network, analyzing them for security breaches. The objective of Intrusion Detection System (IDS) is to protect the availability, confidentiality, and integrity of critical networked information systems as per security policy. Intrusion Detection Systems are an important component of ...
Get Design and Analysis of Security Protocol for Communication now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.