摘要
目前基于IPv4的校园通信网络显示出诸多弊端,如地址空间有限、安全性差等.IPv6的安全性同IPv4相比有了明显的提高,但是IPv6不能保证应用层和协议本身的安全性,校园网本身也存在诸多应用安全问题.本文详细分析IPv6环境下的校园网络安全问题和技术漏洞,阐述基于IPv6的校园网入侵检测系统的必要性,提出一个基于Snort的IPv6环境下入侵检测系统的设计方法和各个模块的组成以及在IPv6校园网中的应用.
Owing to IPv4 campus communication network displays all kinds of shortage, such as limited address space and poor security and so on. Compare to IPv4, IPv6 improve the security of the network obviously. But IPv6 has not effectively prevent attack about application layer and protocol itself. This paper analyzed the security problems and technology leaks of IPv6 campus networks, expatiated the necessity of intrusion detection system for IPv6 campus networks, and then proposed an implementation of intrusion detection system based on Snort under the environment of IPv6 networks. At the end of this paper an applying method of the intrusion detection system in IPv6 campus networks was told.
出处
《小型微型计算机系统》
CSCD
北大核心
2009年第3期480-483,共4页
Journal of Chinese Computer Systems
基金
国家发改委CNGI下一代互联网示范工程IPv6安全网关平台产业化项目(沪发改高技[2006]033号)资助