摘要
Snort是一个功能强大的轻量级的NIDS,它能够检测出各种不同的攻击方式,并能对攻击进行实时警报。然而,Snort对DHCP Flood攻击的检测存在着明显的缺陷。在入侵检测系统Snort的基础上,通过设计预处理插件,实现了对DHCP Flood攻击的检测。
Snort is one of a light weight, powerful NIDS. It can detect many different attack behviors, and then give a real-time alarm. However, Snort has a clear defect about DHCP Flood detection. In this paper, we expand preprocessor plug-ins to achieve detection the DHCP Flood based on the Snort NIDS.
出处
《电脑开发与应用》
2010年第6期42-44,共3页
Computer Development & Applications