检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:李建 LI Jian(Network and Education Technology Center,Jinan University,Guangzhou 510630,China)
机构地区:[1]暨南大学网络与教育技术中心,广东广州510630
出 处:《电子设计工程》2020年第4期82-85,95,共5页Electronic Design Engineering
摘 要:传统网络数据入侵检测模型的检测时间长,检测结果准确率低。为解决上述问题,基于IPSec安全协议设计了一种新的网络数据传输入侵检测模型。利用IPSec安全协议完成网络数据传输通信数据检测,分析了IPSec安全协议中的AH协议和ESP协议,使用不同的安全策略分布密钥,建立双向通讯流,并根据安全关联终点数量构建出3种嵌套隧道通信传输检测扩展方式,利用DBN对网络数据进行训练,通过网络审计技术分析得到数据,审计的数据包不只是单独的数据包,同时也是双向传输数据包,分析可见层和隐藏层之间的关系,检测入侵数据。为了验证模型效果,与传统入侵检测模型进行实验对比,结果表明,基于IPSec安全协议的网络数据传输入侵检测模型能够在短时间内精准地检测到入侵行为。Traditional network data intrusion detection model has long detection time and low detection accuracy. To solve these problems,a new intrusion detection model for network data transmission is designed based on IPSec security protocol. IPSec security protocol is used to complete the data detection of network data transmission and communication. The AH protocol and ESP protocol in IPSec security protocol are analyzed. Different security strategies are used to distribute keys and establish two-way communication flow. According to the number of security associated endpoints,three nested expansion modes of tunnel communication transmission detection are constructed. The network data is trained by DBN,and the network audit technology is divided into three parts. The audited data packages are not only individual data packages,but also bidirectional data transmission. The relationship between visible layer and hidden layer is analyzed,and intrusion data is detected. In order to verify the effectiveness of the model,the experimental comparison with the traditional intrusion detection model shows that the network data transmission intrusion detection model based on IPSec security protocol can accurately detect intrusion behavior in a short time.
关 键 词:IPSEC安全协议 网络数据 传输模型 入侵检测模型
分 类 号:TP242.6[自动化与计算机技术—检测技术与自动化装置]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:216.73.216.145