摘要
入侵检测系统是保障无线局域网安全的重要措施。在深入分析WLAN存在的安全问题及常见攻击的入侵原理后,设计了一种分布式无线入侵检测系统。该系统采用层次模型,通过对捕获的数据包进行协议分析,使用特征匹配与统计分析相结合的检测方法,实现对WLAN常见入侵的检测。理论分析表明:系统能有效检测Wardriving入侵、非法AP、DoS、MAC地址欺骗等无线网络入侵行为,可用于无线局域网的某些安全应用中。
Intrusion detection system is an important device to protect the security of wireless local area network (WLAN). After analyzing the security and intrusion principles of WLAN in detail, a new distribution wireless intrusion detection system is designed, which use protocol analysis, feature matching and statistical analysis to detect intrusion. It is proved by theory that the new intrusion detection system can detect wireless network intrusion behavior of Wardriving, rogue AP, DoS and MAC address spoofing, and it can also be used to protect the security of WLAN in some fields.
出处
《微型电脑应用》
2009年第8期1-3,共3页
Microcomputer Applications
基金
陕西省自然科学基础研究计划项目(SJ08-ZT14)