Journal of Software, Vol 2, No 6 (2007), 42-52, Dec 2007
doi:10.4304/jsw.2.6.42-52

Learning Problem and BCJR Decoding Algorithm in Anomaly-based Intrusion Detection Systems

Veselina G. Jecheva, Evgeniya P. Nikolova

Abstract


The anomaly-based intrusion detection systems examine current system activity do find deviations from normal system activity. The present paper proposes a method for normal activity description using the Hidden Markov Models (HMM), which is tuned up using the gradient based method. The obtained model is utilized as a baseline, depicting the normal system activity. The main purpose is to distinguish the normal traces of user activity from abnormal ones using the BCJR decoding algorithm. Some results from the conducted simulation experiments are introduced as well.



Keywords


intrusion detection, anomaly-based intrusion detection, learning problem, Hidden Markov Model, BCJR decoding algorithm

References



Full Text: PDF


Journal of Software (JSW, ISSN 1796-217X)

Copyright @ 2006-2011 by ACADEMY PUBLISHER – All rights reserved.