The growth of network bandwidth requires that intrusion detection systems (IDSs) have
higher performances than ever. In this paper, two efficiency detecting approaches of IDSs are
presented. One is to use an IDS traffic controller managed by an appropriate traffic control strategy
to perform payload balancing; the other is to use attack level classification according to detection cost
to arrange the tasks of different IDS. By using the two methods, the IDS traffic payload is
balanced, resulting the increased overall detection efficiency; in addition, different IDSs are
complemented each other, therefore the anti-capability of IDSs can be enhanced.