Intrusion Detection in Computer Networks Through Combining Particle Swarm Optimization and Decision Tree Algorithms

  • سال انتشار: 1400
  • محل انتشار: مجله تحقیقات علوم داده های کسب و کار، دوره: 1، شماره: 1
  • کد COI اختصاصی: JR_JBDSR-1-1_003
  • زبان مقاله: انگلیسی
  • تعداد مشاهده: 176
دانلود فایل این مقاله

نویسندگان

Amin Rezaeipanah

Department of Computer Engineering, University of Rahjuyan Danesh Borazjan, Bushehr, Iran

Musa Mojarad

Department of Computer Engineering, Firoozabad Branch, Islamic Azad University, Firoozabad, Iran

Samaneh Sechin Matoori

Department of Managment, Najafabad Branch, Islamic Azad University, Najafabad, Iran

چکیده

Nowadays, network-based computer systems have an essential role in modern society and therefore can be targeted by enemies or intruders. To provide complete security in a computer system that is connected to the network, the use of firewalls and other intrusion prevention mechanisms is not always enough, and it is necessary to use other systems called intrusion detection systems. This type of system detects and notifies the user if an intruder passes through the firewall and antivirus and enters the system. Data mining techniques and methods are used to improve the function of these types of systems and to correctly detect intrusions. Due to a large number of features in the intrusion detection data, in this study, a subset of desired features was first selected by using a combination of graph-based clustering algorithm and Particle Swarm Optimization (PSO). Then, to classify the data and to detect intrusion, a model using the standard decision tree data mining technique is shown. The implementation of the proposed method is evaluated by using the NSL-KDD database, which has more realistic records than other intrusion detection data. The results of the experiments show a high functionality of the proposed method.

کلیدواژه ها

Intrusion Detection Systems, Data Mining, Feature Selection, Particle Swarm Optimization

اطلاعات بیشتر در مورد COI

COI مخفف عبارت CIVILICA Object Identifier به معنی شناسه سیویلیکا برای اسناد است. COI کدی است که مطابق محل انتشار، به مقالات کنفرانسها و ژورنالهای داخل کشور به هنگام نمایه سازی بر روی پایگاه استنادی سیویلیکا اختصاص می یابد.

کد COI به مفهوم کد ملی اسناد نمایه شده در سیویلیکا است و کدی یکتا و ثابت است و به همین دلیل همواره قابلیت استناد و پیگیری دارد.