作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2008, Vol. 34 ›› Issue (21): 132-135. doi: 10.3969/j.issn.1000-3428.2008.21.048

• 安全技术 • 上一篇    下一篇

基于风险意识的动态入侵防御系统模型

陈东方1,王 华1,顾进广1,2   

  1. (1. 武汉科技大学计算机科学与技术学院,武汉 430081;2. 东南大学计算机科学与工程学院,南京 210096)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2008-11-05 发布日期:2008-11-05

Dynamic Intrusion Prevention System Model Based on Risk-aware

CHEN Dong-fang1, WANG Hua1, GU Jin-guang1,2   

  1. (1. College of Computer Science and Technology, Wuhan University of Science and Technology, Wuhan 430081; 2. College of Computer Science and Engineering, Southeast University, Nanjing 210096)
  • Received:1900-01-01 Revised:1900-01-01 Online:2008-11-05 Published:2008-11-05

摘要: 针对现有网络安全产品报警率不高、安全系统反应能力不强的问题,提出一种基于风险意识的动态入侵防御系统模型。风险意识的引入克服了传统入侵检测系统静态规则控制下的“是/不是”判定模式的缺点。借用网管系统实现防火墙与授权端的联动,实现动态规则控制下的风险判定模式。

关键词: 风险意识, 入侵防御系统, 授权端, 网管系统

Abstract: Now the security policy is always static, which is unsuitable for the complicated and changed network. In order to change that, Intrusion Prevention System(IPS) design based on risk-aware is put forward which makes up the defect of the pattern of “yes/no”. The SNMP is used to realize the linkage of the firewall and authorization end. The network is protected in the dynamic aspect.

Key words: risk-aware, Intrusion Prevention System(IPS), authorization end, network management system

中图分类号: