摘要
入侵检测是近十几年来出现的一种主动保护自己以免受黑客攻击的新型网络安全技术。入侵检测被认为是防火墙后的第二道安全阀门,它在不影响网络性能的情况下对网络进行监测,从而提供对内部攻击、外部攻击和误操作的实时保护。文章从网络入侵检测概念入手,重点对入侵检测系统的类型和入侵检测方法进行分析与阐述,最后对当前的入侵检测系统的不足之处给出了分析。
The intrusion detection is one new network security technology which protects oneself in order to avoid attacking from hacker in recent several years, It is considered as the second security valve after the firewall, it can monitor the network and provide real-time protection from internal attack, exterior attack and misoperation without affecting network's performance. The article first introduce network intrusion detection concept, then elaborate the type and method ofintrnsion detection system, finally has given analysis of disadvantage for the current intrusion detection system.
作者
赵海龙
纪澍琴
ZHAO Hai-long, JI Shu- qin (Graduate's Department, Changchun University of Technology, Changchun 130012, China; 2, Promulgation Engineering's College, Changchun University of Technology, Changchun 130012, China)
出处
《电脑知识与技术》
2007年第8期727-728,共2页
Computer Knowledge and Technology
关键词
入侵检测
IDS
误用检测
异常检测
Intrusion Detection
IDS
Misuse Detection
Anomaly-based Detection