期刊文献+

IDS与防火墙联动的网络安全模型设计 被引量:12

Design of Interaction with Intrusion Detection System and Firewall Internet security Model
下载PDF
导出
摘要 提出IDS、防火墙由控制台进行联动的IFI(IDS and Firewall and IDS)模型,该模型对网络起到三重保护作用,同时可以避免防火墙遭到内外网的攻击,给出IDS模块、防火墙模块及联动控制台模块的设计思路。针对Snort无法检测经过IPSec作用的网络数据包的情况,提出在联动控制台设置IPSec映射模块,从而实现IPv6环境下Snort对经过IPSec作用的数据包的入侵检测。 This paper proposes the model of interaction among intrusion detection systems and firewall, which protects the network very well, and at the same time avoids the attacks from inside and outside of the firewall. Expounds every details of this model. Aiming at the situation of snort can't detect the packets with the action of IPSec, a IPSec module at the interaction control platform is proposed to achieve the goal that Snort can detect the intrusion of the IPSec packets in the IPv6 environment.
出处 《科技通报》 北大核心 2011年第2期233-237,共5页 Bulletin of Science and Technology
关键词 IPSEC 防火墙 SNORT 入侵检测系统 联动技术 IPSec firewall snort intrusion detection system interaction technique
  • 相关文献

参考文献6

  • 1马传龙,张涛,熊伟.基于Snort的入侵防御系统的研究[J/OL].1994-2010 China Academic Journal Electronic Publishing House.http://www.cnki.net.
  • 2Joel Ortiz,Johnly Tomelden.Component Based Information Network for Computer Security[C] //Sixth InternafionM Conference on Information Technology:New Generations,2009:467-469.
  • 3Snort and Sourcefire,"Snort",Snon.org@2005 Sourcefire,Inc.All Rights Reserved.
  • 4LI Lei-jun,PENG Hong.A Defense Model Study Based on IDS and Firewall Linkage[C] //2010 International Conference of Information Science and Management Engineering,2010:91-94.
  • 5Deng Zi-kuan,Fan Ming-niu.TCP Flow Restructuring of Snort Intrusion Detection System[J].Information Security and Communication Security,2007,(2):65-67.
  • 6Ahsan Kamran,Covert Channel Analysis and Data Hiding in TCP/IP[D].University of Toronto,2002.

同被引文献78

引证文献12

二级引证文献19

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部