研究生: 林己吉
Citra - Dwi Perkasa
論文名稱: A Study of Intrusion Detection System Using Support Vector Machines and Hierarchical Clustering
A Study of Intrusion Detection System Using Support Vector Machines and Hierarchical Clustering
指導教授: 洪西進
Shi-Jinn Horng
口試委員: 鍾國亮
Kuo-Liang Chung
Hsing Mei
Yung-Chung Wang
Ming-Yang Su
學位類別: 碩士
系所名稱: 電資學院 - 資訊工程系
Department of Computer Science and Information Engineering
論文出版年: 2008
畢業學年度: 96
語文別: 英文
論文頁數: 40
外文關鍵詞: Clustering Feature, Clustering Feature Tree
  • Intrusion detection is the process of monitoring the events occurring in a computer system or network and analyzing them for signs of intrusions. There have been a lot of researches done to invent an ideal intrusion detection system (IDS) that is a system which can detect both known attacks and new attacks. Support vector machines (SVM) has been known as a promising methods for classification accuracy and its generalization ability. In this research, we design an SVM-based intrusion detection system which combines a hierarchical clustering algorithm, feature selection process and SVM classification techniques. The hierarchical clustering will provide SVM with a high quality training instances from the original training set. The feature selection process will eliminate unimportant features from the training set so that the model SVM produced can be used to classify the network traffic data accurately. Our experiments which use KDD Cup 1999 data set show that our method can achieve high accuracy classification rate with a low false positive rate.

    ABSTRACT i ACKNOWLEDGEMENTS ii TABLE OF CONTENTS iii LIST OF FIGURES v LIST OF TABLES vi CHAPTER I. Introduction 1 I.1. Overview of Network Intrusion Detection System 2 I.2. Using SVM as a Classification Technique 3 I.3 Related Work 6 I.4 Thesis Organization 7 CHAPTER II. Hierarchical Clustering and Support Vector Machines 8 II.1 Hierarchical Clustering 8 II.1.1 Clustering Feature 10 II.1.2 CF Tree 11 II.2 Support Vector Machines 16 CHAPTER III. SVM with Hierarchical Clustering 19 III.1 Data Transformation and Scaling 20 III.2 Construct a CF tree 21 III.3 Feature Selection 23 III.3.1 Methodology of Feature Selection 24 III.3.2 Performance metrics 24 CHAPTER IV. Experimental Result 26 IV.1. KDD Cup 1999 Data Set 26 IV.2. Experiment Setup 29 IV.3. Experimental Result 30 IV.4. Comparison with Other Intrusion Detection System 32 IV.5. Evaluation 33 CHAPTER V 36 REFERENCES 38

