期刊文献+

集成入侵检测引擎的增强型防火墙技术研究 被引量:1

RESEARCH ON THE ENHANCED FIREWALL TECHNIQUES INTEGRATED WITH THE ENGINE OF INTRUSION DETECTION
下载PDF
导出
摘要 提出了一种增强型防火墙技术,通过把入侵检测引擎集成到传统的包过滤防火墙中,实现两者的协同工作,使得该防火墙在具备传统安全保护功能的同时,还能够根据内嵌的入侵检测引擎的响应结果动态设置过滤规则,及时禁止可能的危险数据通信,从而更好地保护网络安全。给出了该增强型防火墙的系统功能、模块结构和协作机制。测试表明,与传统防火墙相比,该防火墙在应对未知攻击时,具有有效阻断率高的优势。 The enhanced firewall techniques are presented. Integrated with the engine of intrusion detection, the firewall is not only able to work as the traditional packet-filtering firewall, but also able to modify its rules dynamically based on the response of the IDS engine so as to prohibit the possibly dangerous communications in time, therefore it can protect the network more effectively. Besides, the system functions, modular structure and the cooperative mechanism of the enhanced firewall are also introduced. Tests show that the firewall has its advantage of a higher blocking efficiency over the traditional packet-filtering firewall when facing with unknown attacks.
出处 《计算机应用与软件》 CSCD 北大核心 2007年第9期4-6,53,共4页 Computer Applications and Software
基金 国家863项目资助(2005AA145110 2002AA145090)
关键词 防火墙 入侵检测 引擎 Firewall Intrusion detection Engine
  • 相关文献

参考文献6

  • 1Ernst&Young.Firewall Study II[M].German Information Security Agency,May 18th,2001.
  • 2Rolf Oppliger.Internet Security:Firewall and beyond,Communications of ACM,1997,40(5):92-102.
  • 3Schuba C I,Spafford E H.A reference model for firewall technology,Proceedings of the 13th Annual Conference on Computer Security Applications,1997,12.
  • 4Ray Hunt.Internet/Intranet Firewall Security-Policy,Architecture and Transaction Services,Computer Communications,1998,21:1107-1123.
  • 5Marcus Ranum.Intrusion Detection System:Expection,Ideals and Realities.Computer Security Journal,1999,14(4):23-25.
  • 6McAnderson B,Ramstedt P.Intrusion Detection Technology:Today and Tomorrow.IEEE Network,2000,15(2):18-23.

同被引文献9

引证文献1

二级引证文献1

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部