摘要
随着计算机网络的发展,对高速网络的安全进行监控变得越来越重要。结合实际需求,本文提出了一些重要的设计思想,实现与测试了一个基于高速网络关键点捕获,对网络攻击进行实时检测、预警和响应的高速网络安全监控系统原型,有效地解决了目前高速网络安全监控系统存在的一些难题。目前,该系统原型已经在实际中得到成功应用。
With the development of computer network, it is more and more important to monitor the security of high-speed networks. Combining with the de-facto demands, some useful ideas are presented in the paper. A prototype system is implemented and tested, which is a high-speed network security monitoring system based on key point capturing, real-time detection, early-warning and reaction to various network attacks. The system effectively resolves some Crucial problems which exist in high-speed network security monitoring systems nowadays. This prototype system has been applied to network security monitoring successfully.
出处
《计算机工程与科学》
CSCD
2005年第11期6-8,共3页
Computer Engineering & Science
基金
国家863计划资助项目(2003AA142010)
关键词
攻击检测
报警分析
报文捕获
报文存储
安全监控
attack detection
alert analysis
packet capturing
packet storage
security monitoring