Tải bản đầy đủ (.pdf) (68 trang)

PHÁT HIỆN ĐỘT NHẬP DỰA TRÊN KHAI PHÁ CÁC LUẬT KẾT HỢP MỜ VÀ LẬP TRÌNH TIẾN HÓA Giảng

Bạn đang xem bản rút gọn của tài liệu. Xem và tải ngay bản đầy đủ của tài liệu tại đây (1.17 MB, 68 trang )



HC VIN CÔNG NGH N THÔNG
KHOA CÔNG NGH THÔNG TIN 1

 ÁN
TT NGHII HC

 TÀI:
PHÁT HIT NHP
DA TRÊN KHAI PHÁ CÁC LUT KT HP M
VÀ LP TRÌNH TIN HÓA




Ging dn : TS. 
Sinh viên thc hin : 
Lp : D07CNPM2
Khóa : 10 (2007  2012)
H : Chính quy



Hà Ni, 



HC VIN CÔNG NGH N THÔNG
KHOA CÔNG NGH THÔNG TIN 1


 ÁN
TT NGHII HC

 TÀI:
PHÁT HIT NHP
DA TRÊN KHAI PHÁ CÁC LUT KT HP M
VÀ LP TRÌNH TIN HÓA




Ging dn : TS. 
Sinh viên thc hin : 
Lp : D07CNPM2
Khóa : 10 (2007  2012)
H : Chính quy



Hà Ni, 

i
LI C
c tiên, em xin gi li bic nht ti Thy giáo TS.,
n tình ch bo,  em trong sut quá trình hc tp và  

Em xin gi li ci tt c  khoa Công
ngh thông tin cùng chy, cô trong- Hc vin Công ngh hính
Vin tn tình   giúp  em     




Xin chân thành c

Hà N
Sinh viên thc hin









ii

LI C i
 ii
NHM iv
NHM v
 vi
 vii
DANH MC CÁC BNG viii
 1
NG QUAN V PHÁT HIT NHP 3
1.1. Các v an toàn mm bo an toàn 3
1.1.1.  4
1.1.2.  5
1.1.3.  10

1.2. t nhp 13
1.2.1.  14
1.2.2.  14
1.3. Các k thut xtrong phát hit nhp 16
1.3.1.  16
1.3.2.  16
1.3.3. -ron 17
1.3.4.  17
1.4. Mô t  xu án 18
1.5.  18
 19
2.1.  19
2.1.1.  20
2.1.2.  23
2.2. Gii thiu v lý thuyt tp m 25

iii
2.2.1.  26
2.2.2. g pháp tính hàm thành viên 29
2.3. K thut lp trình tin hóa GNP 30
2.3.1. Cn ca GNP 31
2.3.2.  làm vic ca GNP 33
2.3.3. Các toán t di truyn 34
2.4.  37

 38
3.1. 
 38
3.1.1.  38
3.1.2.  41

3.1.3.  48
3.2.  49
3.3.  51
3.3.1.  51
3.3.2.  53
3.4.  55
 56
4.1.  56
4.2.  56
 57





iv

(Ca nng dn)


















m: ng ch
ng ý cho sinh viên bo v c hng ch án tt nghip?.
Hà ni, ngày tháng 12 
CÁN B - GING DN



v
NHM
(Ca ni phn bin)


















m: ng ch
ng ý cho sinh viên bo v c hng ch án tt nghip?.
Hà ni, ngày tháng 12 
CÁN B - GING VIÊN PHN BIN

vi

KDD
Knowledge Discovery in Database
GNP
Genetic Network Programming
IDS
Intrusion Detection System
NIDS
Network-based Instrusion Detection Systems
HIDS
Host-based instrusion detection systems
SVM
Support Vector Machines (SVM)
GP
Genetic Programming
GA
Genetic Algorithm

vii

 6
 7

 8
 9
Hình 1.5. Ti gói tin 9
 10
Hình 1.7. Mô t NIDS 15
Hình 1.8. Mô t HIDS 15
Hình 2.1. Kin hình ca h thng khai phá d liu 20
Hình 2.2. Quá trình khai phá d liu 21
 27
 27
 27
Hình 2.6. Minh ha min tin cy và minh ca tp m 29
Hình 2.7. Cn ca cá th GNP 32
Hình 2.8. Bi lung thc thi GNP 34
Hình 2.9. Ví d v phép lai ghép 35
Hình 2.10. Ví d v t bin 36
 39
 40
 41
 42
 43
 44
 48
 51

viii



 50

 51
 52
 53
 54
 
 D07CNPM2 1

S phát trin mnh m ca máy vi tính và i
rt nhiu li ích trong mc ca cuc sng: hc tp, nghiên ci thông tin,
kinh doanh, quInternet n tr thành mt thành phn ct yu ca xã hi thông
tin hic tính m ca Internet, s an toàn ca h thng máy tính và
d li       xâm nhp trái phép. S phát trin rng khp ca
Internet n v  phát hin t nhp mng tr thành
mt thành phn cc k quan trng trong vic bo v  h tng mng máy tính.

 
.

,

.



 



â
logic




c






 
 D07CNPM2 2




 
 D07CNPM2 3

c h





1.1. 
Internet

Internet


Internet



Internet
Internet

          






Internet 
 

                




 
 D07CNPM2 4
1.1.1. 
 
nhân  
 




ti


 



 


 

 





c coi là tài sn ca mt h thu v an toàn
thông tin là mt yêu cu ti quan trng. 
thông tin:
    :         

ng
c kinh doanh

 
 D07CNPM2 5
   :             

            



 -repudiation): 




1.1.2. 



: 
.
1.1.2.1. 
i là các phn m

       

u. Có 2 loi phn mm phá hoi: Phn mm phá hoi ph thu
và phn mm phá hoc l a trên Hình 1.1.

 Trap-Door:              
-

-

 Logic Bomb
 


 
 D07CNPM2 6



 Trojan Horse

          
mình.
 Viruses

f



 Worm
Internet 

          



Trap
Doors
Logic
Bomb
Trojan
Horse
Viruses


Worms

Zombie



 
 D07CNPM2 7

 Zombie
Internet 

1.1.2.2. 



 : 

là dò tìm tên ng

 






c
 




. Ping of Death - Các
Information source
Information destination
 
 D07CNPM2 8
ping 
Tear Drop - offset

SYN Attack - SYN

SYN 

 

 



Packet Sniffers - 
 Port Scans và ping sweeps -


.
                

     
 .

Information source
Information destination
 
 D07CNPM2 9




               








  
trê Hình 1.5.

Hình 1.5. 
ói tin









Information
source
Information
destination
Information source
Information destination
 
 D07CNPM2 10
Man-in-the-
Middle Attack).
1.1.3. 

             




1.1.3.1. 


Các bit nhc coi là lp bo v u tiên trong an toàn
mng. Có nhiu bit nhp, mi bin pháp bo v h thng theo các




Thông tin






 
 D07CNPM2 11
cách khác nhau. Trong thc t, các h th  c áp dng kt h ng thi
nhiu kiu t nhp. Có th chia các bit
nhp theo m bo v a trên .
1.1.3.1.1. 
ng la là mt phn ca mc ca mt mc
thit k  n nhng truy cp trái phép và cho phép các truy cp hc
a trên mt tp lut và tiêu chung la còn có th mã hóa,
gii mã hay y quyn cho các giao dch gia các min bo mt khác nhau.
 loi ng la có chng la lc gói (Packets
filters), Cng ng dng (Application gateways), Cng mc mch (Circuit-level

  
                


 Cng ng dng (Application gateways): Làm vic  m
gian trong mi kt ni t máy khách ti máy ch. Khi máy khách có nhu cu truyn
thông ti máy ch, gói tin gi t máy khách ti máy ch s c nhn bi cng ng
dng. Cng ng dng xem xét tính hp l ca gói tin yêu cu da theo tp lunh
sn.
 -level gateways)

 

 
                 

 
 

:
 

 
 D07CNPM2 12
 
 -


1.1.3.1.2. 
n truy cp h thng bm
i s dng không có thm quyn s d 
1.1.3.1.3. 
Mã hóa d lio v thông tin d liu bng cách chuyn d liu t
dng sang dng b mã hóa không th  bii v
dc nh mt hình thc ging. Có hai kiu mã hóa chính là:
i xng và mã hóa bi xng.
  Hai bên m
hai n 
        n: AES, Blowfish, DES, IDEA 


  



RSA, DSS (Digital Signature Standard).

1.1.3.1.4. 
p vào h thông có phi
i dùng hp l hay không. Các yu t -  xác thi
dùng bao gm:
 

            personal identification
number
 
 
 D07CNPM2 13
1.1.3.1.5. s)
Quyn truy cp là mc bo v trong cùng. Sau khi xác thi dùng
có th truy cp vào h thng. Tùy vào ti dùng c th c phân quyn truy
cp, s dng h thng khách nhau. Ví d trong mt phân quyn s dng tài nguyên h
thng, tùy tài khon mà có th i, hay xóa d liu.
1.1.3.2. 
H thng phát hip (Intrusion Detection System  IDS) là h thng phn
cng hoc phn mm có ch ng theo dõi các s kin xy ra trên h thng máy
tính và m phát hin ra các v n an ninh, bo mt. Khi s
v tt nhp vào các h thng máy tính, m thng phát
hin xâm nhng và cn thin tng bo mt ca
các t chc.
Mt IDS ng gm có 3 b phn chn: Ngun d liu, phân tích các
s kit qu tr . Ngun d liu cung cc ly t nhiu
mc ca h thng cn phát hit nhp. Mt s ngun d liu thông dInternet,
host và các thông tin t các ng dng. Thành phn phân tích các
s kin, d liu da vào ngun d liu hun luyn mô hình hóa và phân tích các s kin
thu thng hp có du hiu ca s tn công. Kt qu tr
là mt tng x lý các s king hp tn công. Hành

ng x lý có th là th  cnh báo ti qun tr, hoc có th là ch ng
p tt nhp bng cách hy gói tin gi t
1.2. 
Ti kin xy ra trên mt h thng máy tính
hay h thng m tìm ra các du hiu xâm nhp bt hp pháp. Xâm
nhp bt h c gng tìm m xâm hn các thuc
tính an toàn ca thông tin và h th: tính bí mt, tính toàn vn, tính 
 hay c g bo mt ca h thng. Vic xâm nhp có th là
xut phát t mt k tInternet nhm giành quyn truy cp h thng,
 là mc phép trong h thn chit các
quyn khác mà h c cp phát.
Phân loi da trên k
thut phân tích d liu và phân loi da trên ngun d liu.
 
 D07CNPM2 14
1.2.1. 


 Signature Based): 





 Ph 






1.2.2. 
Theo phân loi da trên ngun di IDS chính:
 H thng phát hi t nhp mng (Network-based Instrusion Detection Systems -
NIDS): Ngun d liu s kin thu thc   ng mng
c ly t c c theo dõi cng hoc các nút mng
    
 Hình 1.7.
ng mng ln, NIDS gp phi mt s  kh  và x lý
 ng thông báo sai khi phi x ng
d liu. Ngoài ra, NIDS không th c các d liu mã hóa
         -based instrusion detection systems):




Hình 1.8 
 
 D07CNPM2 15



Hình 1.8. 

×