Journal of Zhejiang University SCIENCE A 2005 Vol.6 No.5 P.371~377


An immunity-based technique to detect network intrusions

Author(s):  PAN Feng, DING Yun-fei, WANG Wei-nong

Affiliation(s):  Department of Computer Science and Engineering, Shanghai Jiaotong University, Shanghai 200030, China; more

Corresponding email(s):   fpan@sjtu.edu.cn, pan_feng_hao@hotmail.com

Key Words:  Artificial immune system, Network intrusion detection, Negative selection, Clonal selection

This paper briefly reviews other people’s works on negative selection algorithm and their shortcomings. With a view to the real problem to be solved, authors bring forward two assumptions, based on which a new immune algorithm, multi-level negative selection algorithm, is developed. In essence, compared with Forrest’s negative selection algorithm, it enhances detector generation efficiency. This algorithm integrates clonal selection process into negative selection process for the first time. After careful analyses, this algorithm was applied to network intrusion detection and achieved good results.

