期刊文献+

一种状态检测防火墙的攻击防御机制 被引量:4

An Attack Defense System Based on State Detection Firewall of Linux
下载PDF
导出
摘要 讨论了一种在Linux操作系统内核防火墙的攻击防御机制,提出了检测网络攻击的机制和总体架构。在Linux操作系统防火墙的基础上构建了攻击防御框架,针对不同的攻击模式,该框架提供相应的状态检测方法判定攻击的发生并使攻击不能成功。提出的攻击防御体系具有通用、可扩展的特点,可以有效克服传统包过滤防火墙在抗攻击和入侵检测方面的局限性。结果表明:该攻击防御机制可以显著改善防火墙系统的IP安全性。 The principle of attack defense realized in a firewall embedded in Linux kernel has been discussed. Based on the analysis of characteristic of network attack, the mechanism and architecture of attack defense are built in accordance. Through the introduce of stateful detection, the attack defense framework is built to determine and prevent the deportment of various attack. Thereafter, the architecture of attack-removed system can be expected to be general-purpose and easy to be extended. The performance of the whole firewall system is enhanced because the attack defense system effectively overcomes the limitation of conventional packet-filtering firewall. The experiments for validating the improvement of IP security are given as well as the research work.
作者 阎波 李广军
出处 《电子科技大学学报》 EI CAS CSCD 北大核心 2005年第4期509-512,共4页 Journal of University of Electronic Science and Technology of China
关键词 LINUX操作系统 状态检测 防火墙 网络攻击 IP安全性 Linux operate system stateful detection firewall attack IP security
  • 相关文献

参考文献3

  • 1颜学雄,王清贤,李梅林.SYN_Flooding攻击原理及预防方法[J].计算机应用,2000,20(8):41-43. 被引量:24
  • 2Paulson, L D. Stopping intruders outside the gates[J]. IEEE Journal Computer, 2002, 35(11): 20-22.
  • 3Brockmeier J. Filtering packets with iptables[EB/OL], http://www.netfilter.org, 2002-12-15.

二级参考文献2

  • 1张小斌,黑客分析与防范技术,1999年
  • 2朱三元,网络通信软件设计指南,1993年

共引文献23

同被引文献20

引证文献4

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部