智能电网中分层网络结构的入侵检测系统研究
Research on intrusion detection system in hierarchical network architecture of smart grid
-
摘要: 为了提高智能电网的安全性和可靠性,将入侵检测系统运用到智能电网中.针对智能电网具有网络节点多、信息传输量大、安全要求高等特点,提出一种基于多Agent的入侵检测系统模型,并将该模型部署到智能电网的分层网络结构中,以减少数据传输,节约带宽,解决速度瓶颈问题;针对入侵检测的误检率高、漏检率高等问题,提出适合智能电网的动态克隆选择算法,将所提算法与多Agent技术相结合,构造了具有免疫功能的Agent.利用标准的入侵检测测试数据集——KDD'99数据集——对所提模型和算法进行仿真验证,结果表明:本系统在保证低误检率的同时,提高了智能电网中常见的Dos和Probing类型攻击的检测率.Abstract: In order to improve the safety and reliability of the smart grid, the intrusion detection system was applied to the smart grid.As smart grid had the characteristics of large number of network nodes, large amount of information transmission and high safety requirements, an intrusion detection model based on multi-agent was established, and was deployed in the hierarchical network structure of smart grid.Therefore, amount of transmission data was reduced, bandwidth was saved and speed bottleneck problem was solved.With the purpose of reducing false positive rate and false negative rate in current intrusion detection system, dynamic clonal selection algorithm for the smart grid environment was proposed.The proposed algorithm could be combined with the multi-agent technology, the immune agents were constructed.The proposed model and algorithm were simulated by KDD'99 datasets.Simulation results showed that the proposed system had low false positive rate and improved the detection rate of Dos and Probing attack that are common attack in smart grid.
-
Key words:
- smart grid /
- intrusion detection /
- multi-agent /
- dynamic clonal selection algorithm
-
-
[1]
Farhangi H.The path of the smart grid[J].IEEE Power and Energy Magazine,2010,8(1):18.
-
[2]
何光宇,孙英云,梅生伟,等.多指标自趋优的智能电网[J].电力系统自动化,2009,33(17):1.
-
[3]
Kuzlu M,Pipattanasomporn M,Rahman S.Communication network requirements for major smart grid applications in HAN,NAN and WAN[J].Computer Networks,2014,67:74.
-
[4]
McDaniel P.Security and privacy challenges in the smart grid[J].IEEE Security and Privacy,2009,7(3):75.
-
[5]
许颖梅.基于Web数据流技术的网络入侵检测研究[J].郑州轻工业学院学报:自然科学版,2012,27(3):11.
-
[6]
王汝传,王华,徐小龙.基于移动代理的入侵检测系统模型的研究[J].通信学报,2004,25(1):22.
-
[7]
王晋,李德全,冯登国.一种基于移动代理自动优化的分布式入侵检测系统[J].计算机研究与发展,2006,43(1):9.
-
[8]
Berthier R,Sanders W H,Khurana H.Intrusion detection for advanced metering infrastructures:requirements and architectural directions[C]//IEEE International Conference on Smart Grid Communications,Piscataway:IEEE,2010:350-355.
-
[9]
Jokar P,Nicanfar H,Leung V C M.Specification-based intrusion detection for home area networks in smart grids[C]//IEEE International Conference on Smart Grid Communications,Piscataway:IEEE,2011:208-213.
-
[10]
Beigi-Mohammadi N,Misic J,Khazaei H,et al.An intrusion detection system for smart grid neighborhood area network[C]//IEEE International Conference on Communications,Piscataway:IEEE,2014:4125-4130.
-
[11]
Jungwon K,Bentley P J.Towards an artificial immune system for network intrusion detection:An investigation of dynamic clonal selection[C]//Proceeding of the 2002 Congress on Evolutionary Computation,Piscataway:IEEE,2002:1015-1020.
-
[1]
计量
- PDF下载量: 24
- 文章访问数: 1046
- 引证文献数: 0