作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2006, Vol. 32 ›› Issue (18): 163-165,. doi: 10.3969/j.issn.1000-3428.2006.18.059

• 安全技术 • 上一篇    下一篇

分布式虚拟陷阱网络系统的设计与实现

汪 洁1,王建新1,唐 勇2   

  1. (1. 中南大学信息科学与工程学院,长沙 410083;2. 国防科技大学计算机学院,长沙 410073)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2006-09-20 发布日期:2006-09-20

Design and Implementation of Distributed Virtual Honeynet System

WANG Jie1, WANG Jianxin1, TANG Yong2   

  1. (1. College of Information Science & Engineering, Central South University, Changsha 410083; 2. College of Computer, National University of Defense Technology, Changsha 410073)
  • Received:1900-01-01 Revised:1900-01-01 Online:2006-09-20 Published:2006-09-20

摘要: 目前大部分安全技术被设计用来阻止未授权的可疑行为获取资源,同时安全工具是作为一种防御措施被布置,所以它们对网络的保护有限。在分析国内外研究现状的基础上,针对现有网络安全工具在入侵检测以及防护等方面的不足,设计和实现了分布式虚拟陷阱系统。该系统所分布的代理由混合Honeynet和低交互的Honeypot构成,降低了Honeypot固有的风险,增加了模拟的真实性,弥补了现存的各类Honeypot的不足。作为一种动态安全防御机制,可以有效地提高大规模网络的整体安全性,是传统安全机制的有力补充。

关键词: 网络安全, 入侵检测, 蜜罐, 陷阱网络

Abstract: Most security technologies are designed to prevent unauthorized activity to resources, and security tools are put into place as a defensive measure. Therefore there is some shortcoming in protecting network. After analyzing the research situation and the shortcoming of security tools in intrusion detection and in protecting system, distributed virtual honeynet system is studied and implemented. The system is composed of hybrid virtual honeynet and low-interaction honeypot, which reduces the inherent risk of honeypot, adds the simulation’s trueness, and it makes up the shortcoming of exiting different type honeypots. As a dynamic security defensive mechanism, it can improve effectively integrate safety of large scale of network, and is completely supplement of traditional security mechanism.

Key words: Network security, Intrusion detection, Honeypots, Honeynets