随着网络攻击方法和手段的不断变化,相应的IDS 也在不断增多,设计有效的IDS 评估方案对保证网络安全具有重要意义。本文在Web 攻击分类的基础上,结合IDS 评估方案的设计要求,克服现有评估方案不能较好地针对Web 攻击的不足,提出了一种基于Web 攻击分类的IDS 评估方案。经过分析,该方案测试范围较广、针对性强和操作方便。 关键词:网络安全;Web 攻击;IDS;评估方案 Abstract:With the continuous change of network attacks, the corresponding IDS also increase. It is crucial to design effective schemes of IDS evaluation in order to assure the network security. Based on the classification of Web attacks, this paper provides a novel scheme of IDS evaluation on account with the request of IDS evaluation and overcomes the inadequacy of the existed ones. After the analysis it is proved that the scheme of IDS evaluation in this paper is convenient in applying, target-shot, wider in test scope. Key words:Network security; Web attacks; IDS; Schemes of Evaluation