摘要
Web上的主机资源包括Web服务器上的文件、端口及地址等,针对现有基于签名的入侵检测系统在Web上存在的安全缺陷,文章通过分析攻击的根源和发生攻击的位置来检测Web上的攻击,进而提出Web入侵检测模型。该模型的核心是Web服务器中对主机资源的监视,最后详细的论述了资源监视系统的设计和实现。
Host resources on the Web include the files,ports,address and so on.Aiming at existing signature-based intrusion detections which are inadequate in providing reasonable degree of web security,we analyze Web attacks based on the root causes and the locations where attacks occur,therefore Web IDS model is developed.The host resource monitor in the Web server is the core of this model. At last,we discuss the design and implementation of intrusion detection resource monitor system based on Web in detail.
出处
《计算机工程与应用》
CSCD
北大核心
2005年第32期156-159,共4页
Computer Engineering and Applications
基金
河北省自然科学基金项目资助(编号:F2004000133)