期刊文献+

基于蜜罐的入侵检测

下载PDF
导出
摘要 针对计算机入侵检测技术中存在的检测率低而误报率、漏报率高的问题,提出了基于蜜罐的入侵检测系统模型。该模型将在被保护的网络系统上对流经的同络数据包进行实时监控,分析蜜罐检测到的入侵数据,提取特征属性并生成规则导入到八侵检测系统,实现了入侵检测技术、蜜罐技术与防火墙技术的联动,达到动态更新入侵检测系统规则,提高检测率的目的。实验结果表明,该系统模型不仅可以保护网络和主机不受已有攻击的威胁,还可以检测出未知的攻击,达到了预期效果。 For the problems of the low detection rate and high false negative rate and false positive in computer intrusion detection technology,this article puts forward an model- Intrusion Detection based on Honeypot. The model will be on the protected network system through the network packets in real-time monitoring,analysis honeypot intrusion detection to the data,extract features and generate rules of property imported into the intrusion detection system,and intrusion detection,honeypet Linkage with firewal) technology,)ntrusion detect)on system to dynamically update the rules to improve the detect)on rate goal.Expermental results show that the system model can not only protect the network and host from existing attacks,can detect unknown attacks,achieved the expected results.
出处 《中国电子商务》 2011年第4期98-99,共2页 E-commerce in China
关键词 入侵检测 蜜罐 检测率 Intrusion detection honeypot detection rate
  • 相关文献

参考文献4

二级参考文献14

  • 1SCHWABE J, ROHRING N. Lessons learned from deploying a honeypot[J].Information Security Bulletin,2000,11(1): 128-224.
  • 2SPITZNER L. The value of honeypots[EB/OL]. www.securityfocuces.com,Dec 2000.
  • 3RAIKOWD. Building your own honeypot[EB/OL], www.linuxsecurity.com,Jun 2000.
  • 4COHEN F. The Deception toolkit home page[EB/OL].www.all.net,Sep 2001.
  • 5Recourse technoiogics inc. honeypot effectiveness study[EB/OL].www.recourse.com/news/press/releases/r102400.html,Sep,2000.
  • 6The Huneynet Project .Know Your Enemy: Revealing the Security Tools, Tactics, and Motives of the Biackhat Community [M]. USA Addison-Wesley Pub, 2000.
  • 7MORAN D B.Tapping and tracking hackers[EB/OL]. www.recourse.com, July 2000.
  • 8BROCKWELL P J, DAVIS R A.Times Series:Theory and Methods[M].Springer,Reihe Pub,1991.
  • 9Shipley,Greg.Anatomy of a Network Intrusion[].Network Computing.1999
  • 10Rubin,Jeffrey,O’Shea,Timothy.Axent NetProwler: Advanced Intrusion Detection on the Loose[].Network Computing.1999

共引文献48

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部