作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2008, Vol. 34 ›› Issue (18): 161-163. doi: 10.3969/j.issn.1000-3428.2008.18.056

• 安全技术 • 上一篇    下一篇

新型主动式漏洞检测系统

赖维莹,陈秀真,李建华   

  1. (上海交通大学电子信息与电气工程学院,上海 200240)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2008-09-20 发布日期:2008-09-20

Novel Active Vulnerability Detection System

LAI Wei-ying, CHEN Xiu-zhen, LI Jian-hua   

  1. (School of Electronic, Information and Electrical Engineering, Shanghai Jiaotong University, Shanghai 200240)
  • Received:1900-01-01 Revised:1900-01-01 Online:2008-09-20 Published:2008-09-20

摘要: 介绍了一种采用C/S结构的新型主动式漏洞检测系统。该系统利用了OVAL漏洞检测定义,包括检测代理和控制台两大模块。其中,检测代理是基于OVAL Schema的漏洞扫描器,能在不对本地计算机系统和网络系统造成任何损害的情况下,全面有效地检测主机漏洞,并将漏洞信息结果上报给控制台,而控制台端实现了同时控制局域网内多台主机的漏洞扫描,并将整个局域网的漏洞信息汇总。大量实验测试证明,该系统是可行且具有先进性的。

关键词: 主动式漏洞检测, 检测代理, 控制台, 漏洞扫描

Abstract: The paper proposes a novel active vulnerability detection system based on C/S mode. This system is composed of two modules: agent and console. The detection agent, which is a vulnerability scanner based on OVAL Schema, can give an effective and all-sided vulnerability scan as well as reporting the result to the console without any damage to the network. At the same time, the console realizes remote control against the process of scans on several computers and gathering of scan results of the whole network. The test result proves that this system is feasible and advanced.

Key words: active vulnerability detection, detection agent, console, vulnerability scan

中图分类号: