摘要
入侵检测系统(IntrusionDetectionSystem)是近年来发展迅速的一种网络安全技术,作为防火墙的有效补充,它在保护电子商务、网上银行、证券交易、政府上网,阻止黑客和内部不满员工的破坏及保护军事机密等方面正发挥着越来越重要的作用。文章讨论了IDS系统的安全架构和安全通信,并且提出了基于PKI的入侵检测系统。它利用了CA认证系统的强大功能,对IDS系统各组件之间或各个IDS系统之间的通信加以认证和加密,有效地保证了IDS系统自身的安全。
Intrusion Detection System is a rapidly developed network security technology As an effective complementarity of firewall,it takes more and more important roles in so many fields such as Ebusinesses, net banks, and net stocks. It also can stop attacks of hackers and dissatisfied employees and protect information security. But like other computer systems, it is also an easy attacked target.Here discusses this situation and loges a solution: an intrusion detection system based on public key infrastructure.It use strong function in CA authentication system,guarantee effectively security of IDS system by authenticating the communication among IDS systems or components in IDS.
出处
《微机发展》
2003年第3期69-71,共3页
Microcomputer Development