期刊文献+

分布式自治型计算机取证系统研究

Research of distributed and autonomous computer forensics system
下载PDF
导出
摘要 针对目前取证系统的时效性不足和通信瓶颈等问题,提出了一种分布式自治型计算机取证系统。该系统利用自治取证节点对所有可能的入侵行为进行实时动态取证,并采用了安全有效的方式对证据及时保存。由于取证节点具有自治取证能力,系统的整体性能得到了优化。实验表明:该系统能实时取到真实有效的电子证据,并具有很强的容错能力。 Currently, most of computer forensics systems are not real-time, and often cause communicational bottleneck. In order to overcome the shortages, a distributed and autonomous computer forensics system was presented. By using the autonomous forensics node, the system could obtain real-time evidence dynamically as soon as network intrusions took place, in which the evidence could be saved in a safe way in time. This way of autonomous forensics could optimize system performance. Experimental result shows that the system can capture the authentic and valid electronic evidence, and has high capability of fault tolerance.
出处 《计算机应用》 CSCD 北大核心 2008年第10期2485-2487,共3页 journal of Computer Applications
基金 国家自然科学基金资助项目(60473031) 公安部应用创新计划项目(2006YYCXHNST024)
关键词 计算机取证 分布式 自治型 computer forensics distributed autonomous model
  • 相关文献

参考文献9

二级参考文献29

  • 1丁丽萍,王永吉.计算机取证的相关法律技术问题研究[J].软件学报,2005,16(2):260-275. 被引量:84
  • 2张红,陆谊.基于数据挖掘的电信欺诈侦测模型[J].微计算机信息,2005,21(06X):44-45. 被引量:6
  • 3连洁,王杰.入侵检测系统在涉密计算机中的应用研究[J].微计算机信息,2005,21(10X):24-26. 被引量:8
  • 4(美)JieWu著.分布式系统设计[M].机械工业出版社,2000..
  • 5RANUM MJ. Thinking about Firewalls[ R]. Proceedings of Second International Conference on Systems and Network Security and Management(SANS-Ⅱ), 1993.
  • 6SCHNEIER B. secrets and lies: digital security in a networked world [M]. chain machine press 2001.
  • 7LUNDIN E, JONSSON E. Survey of Intrusion detection Research [R]. Technical Report nr. 02 -04. Department of Computer Engineering, Chalmers University of Technology, Goteborg, Sweden 2002.
  • 8LUNT TF. Automated Audit Trail Analysis and Intrusion Detection R]. A Survey Proceedings of the 11 th National Computer Security Conference, 1988 - 10.
  • 9CARBER L. computer Forensics: High-tech Law Enforcement[J].IEEE security. 2001,34(1).
  • 10RIVEST R. The MD5 Message-Digest Algorithm[ S]. Network Working Group, RFC1321, April 1992.

共引文献24

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部