作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2006, Vol. 32 ›› Issue (18): 169-171. doi: 10.3969/j.issn.1000-3428.2006.18.061

• 安全技术 • 上一篇    下一篇

入侵检测中的审计追踪技术

蒋卫华1,种 亮2,杜 君3   

  1. (1. 第二炮兵工程学院控制科学与工程博士后流动站,西安 710025;2. 西北工业大学软件学院,西安 710065; 3. 西北工业大学计算机学院,西安 710072)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2006-09-20 发布日期:2006-09-20

Technology of Audit Tracing for Intrusion Detection

JIANG Weihua1, CHONG Liang2, DU Jun3   

  1. (1. Postdoctoral Research Fellow Control Science and Engineering, Second Artillerist Engineering Institute, Xi’an 710025; 2. College of Software Engineering, Northwestern Polytechnical University, Xi’an 710065; 3. College of Computer Science, Northwestern Polytechnical University, Xi’an 710072)
  • Received:1900-01-01 Revised:1900-01-01 Online:2006-09-20 Published:2006-09-20

摘要: 审计追踪技术是计算机网络安全领域中一个十分重要的研究课题,它是对有关操作系统、系统应用或用户活动所产生的一系列的计算机安全事件进行记录和分析的过程。该文从审计追踪的基本概念入手,对所涉及的一些关键技术和标准进行了总结和归纳。通过分析和研究,最后提出了详细的安全审计方法和具体实施步骤。实践证明,该方法是一种有效而易于实现的安全审计方法。

关键词: 网络安全, 入侵检测, 审计追踪

Abstract: The technology of audit tracing is a very important aspect in network security. It is the process of memorizing and analyzing a series of computer security events produced by operating system, system application or user activity. This thesis introduces the basic conception , and the key technology and standard have been summarized. The detailed method and basic process of security audit have been proposed. This method has been proved to be effective and prone to be carried out.

Key words: Network security, Intrusion detection, Audit tracing