入侵檢測(cè)系統(tǒng)誤報(bào)率高是一個(gè)普遍存在的問(wèn)題.本文從概率論的角度出發(fā),通過(guò)對(duì)入侵檢測(cè)系統(tǒng)誤報(bào)產(chǎn)生的原因進(jìn)行分析,論證基于危險(xiǎn)理論的入侵檢測(cè)系統(tǒng)在保證檢測(cè)率的同時(shí),有效地降低入侵檢測(cè)系統(tǒng)的誤報(bào)率.%It is a common problem that false positive of intrusion detection system is high. This paper analyzes the reason of intrusion detection system to produce false positive from the perspective of probability theory, and demonstrates that intrusion detection system based on danger theory reduces false positive rate effectively and ensures detection rate at the same time.
展開(kāi)▼