作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2007, Vol. 33 ›› Issue (10): 128-130.

• 安全技术 • 上一篇    下一篇

计算机网络安全应急响应技术的分析与研究

刘宝旭1,马建民2,池亚平3   

  1. (1. 中国科学院高能物理研究所计算中心,北京100049;2. 中国科学院研究生院,北京100049;3. 北京电子科技学院,北京 100070)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2007-05-20 发布日期:2007-05-20

Analysis and Research About Computer and Network Security Emergency Response Technologies

LIU Baoxu1, MA Jianmin2, CHI Yaping3   

  1. (1. Computing Center, Institute of High Energy Physics, Chinese Academy of Sciences, Beijing 100049; 2. Graduate School, Chinese Academy of Sciences, Beijing 100049; 3. Beijing Electronic Science and Technology Institute, Beijing 100070)
  • Received:1900-01-01 Revised:1900-01-01 Online:2007-05-20 Published:2007-05-20

摘要: 结合实际工作经验和研究成果,在分析安全应急响应技术发展动态的基础上,对网络入侵检测、事件隔离与应急恢复、取证、网络陷阱及诱骗等应急响应关键技术进行了分析和研究。构建了一个网络安全应急响应系统,并对系统的工作机制进行了分析。

关键词: 应急响应, 事件隔离, 入侵检测, 取证, 陷阱

Abstract: Based on the analysis of the development trend about computer network security emergency response technologies, this paper researches the emergency response key technologies such as intrusion detection, incident isolation, emergency restore, forensic, networked trap and entrapment technology, and draws relevant conclusion. An emergency response system is designed and its work mechanism is analyzed.

Key words: Emergency response, Incident isolation, Intrusion detection, Forensics, Trap

中图分类号: