首页 | 本学科首页   官方微博 | 高级检索  
     

基于免疫优势多克隆网络的异常检测
引用本文:白琳,潘晓英.基于免疫优势多克隆网络的异常检测[J].计算机工程,2012,38(17):129-132.
作者姓名:白琳  潘晓英
作者单位:西安邮电大学计算机学院
基金项目:国家自然科学基金资助项目(61105064);陕西省教育厅科研基金资助项目(2010JK837);陕西省自然科学基金资助项目(2011JM8007)
摘    要:为实现无监督异常检测,提出一种用于网络数据训练学习的免疫优势多克隆网络聚类算法。根据抗体抗原亲合度,通过免疫优势、克隆、交叉、非一致变异、禁忌克隆和克隆死亡等人工免疫系统算子,实现抗体网络的进化学习和自适应调节。以一个小规模的网络映射原始数据集的内在结构,利用基于凝聚的层次聚类方法对网络结构进行分析,从而获得描述正常和异常行为的数据特征。仿真结果表明,该算法适用于大规模、无标识数据的异常检测,并能检测出未知攻击。

关 键 词:异常检测  免疫优势  多克隆网络  交叉算子  非一致变异  禁忌克隆
收稿时间:2011-08-22
修稿时间:2011-12-12

Abnormal Detection Based on Immunodominance Polyclonal Network
BAI Lin,PAN Xiao-ying.Abnormal Detection Based on Immunodominance Polyclonal Network[J].Computer Engineering,2012,38(17):129-132.
Authors:BAI Lin  PAN Xiao-ying
Affiliation:(School of Computer Science & Technology,Xi’an University of Posts & Telecommunications,Xi’an 710121,China)
Abstract:A polyclonal network clustering algorithm for training the network data is employed to build a unsupervised abnormal detection system.It is directed by the affinity function between antibody and antigen.Some artificial immune system operators are used in the method including immunodominance,clone,cross,non-uniform mutation and forbidden clone.A small-size,self-adaptive and self-learning network is evolved in the method to reflect the distribution of original data.A traditional hierarchical agglomerative clustering algorithm is employed to perform clustering analysis and obtain the classification of normal and abnormal data.Simulation results show that the algorithm can deal with massive unlabeled data to detect anomaly and even can detect unknown attacks.
Keywords:abnormal detection  immunodominance  polyclonal network  cross operator  non-uniform mutation  forbidden clone
本文献已被 CNKI 等数据库收录!
点击此处可从《计算机工程》浏览原始摘要信息
点击此处可从《计算机工程》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号