Simulation of Path Mark Technology After Network Intrusion Attack
Tian Guan-we · 2014
Network suffered after the invasion,attack path and the legal path distribution,damage to normal information transmission.Traditional attack path mining method,is given priority to with Yu Fang Shi,signs of attack after attack path is very little study,main difficulty is that cannot be solved,cannot solve attack under the random characteristics,active attack and passive attack recognition problem,cannot accurately identify network intrusion path.An attack path identification method is put forward on the basis of IPPID multi-stage network intrusion.Based on historical routing IP address and the value of Pi database of network intrusion path for identification,the method accesses to the full path and dynamic insert logo,maximizes the use of identifier domain space,and carries on the dynamic identification.The path identification method can be dynamically adaptive to different network data features,through the learning process of host judge,it can identify that the packet is lawful bales or attack.Experimental result shows that the proposed method is superior to other methods in convergence time and the rate of false positives.Compared with other path identification scheme comparison,the difference of acceptance rate of the proposed method improves15%-20%,which significantly increases the accuracy of the network attack path markers.