A Hybrid Snort-Negative Selection Network Intrusion Detection Technique

International Journal of Computer Applications
Foundation of Computer Science (FCS), NY, USA
Year of Publication: 2016
Tarek M. Mahmoud, Abdelmgeid A. Ali, Hussein M. Elshafie

Tarek M Mahmoud, Abdelmgeid A Ali and Hussein M Elshafie. A Hybrid Snort-Negative Selection Network Intrusion Detection Technique. International Journal of Computer Applications 146(5):24-31, July 2016. BibTeX

Network Intrusion Detection Systems (NIDSs) are systems that monitor computer networks to detect, identify and prevent the malicious events, which attempt to compromise the integrity, confidentiality or availability of computer networks. The NIDS may be classified according to the detection technique into two types, the "Signature-Based" and "Anomaly-Based" NIDS. In order to increase the efficiency of the NIDS, a hybrid signature-anomaly NIDS based on both snort and negative selection algorithm is proposed. To evaluate the efficacy of the proposed system the 1999 DARPA data set is used. The experimental results show that the performance of the proposed system is more efficient than using snort on its own.


Signature Based, Anomaly Based, Snort, Negative Selection