检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
机构地区:[1]哈尔滨理工大学计算机科学与技术学院,黑龙江哈尔滨150080
出 处:《计算机技术与发展》2008年第2期159-162,共4页Computer Technology and Development
基 金:国家社会公益研究专项(2005DIB2J218)
摘 要:针对单一技术在安全防御上存在的缺陷,提出了一个基于三层防御机制的网络安全防御体系模型。该体系有机结合了防火墙、NIPS、基于异常的入侵检测、蜜罐等多种安全技术深层抵御入侵,各组件通过传递XML信息互相协作。首先对网络的安全和结构进行分析,在此基础上给出了体系模型并说明了模型的工作流程,对涉及的关键技术做了探讨,给出了蠕虫攻击实验测试系统的性能。实验结果证明该体系不仅能阻断已知攻击,对未知攻击也做到了有效防御。Focusing on the defects of the single technology on security prevention, proposed a network defense system model based on the three- level defense mechanism. The model that organically ioined firewall, NIPS, AIDS, honeypot anci so on had resisted attack in - depth, components cooperated by transmiting XML message. Firstly, the design thought of the security prevention system was described in the paper, and based on the thought, the architecture and workflow of the model was presented, and then the relevant sore technology was discussed. Lastly the worm attack experiment was presented to test the performance of the system. The experiment proved that the model not only blocked the known attack but also achieved the effective defense to the unknown attack.
分 类 号:TP393.08[自动化与计算机技术—计算机应用技术]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.33