摘要
随着网络速度的日益提高和网络入侵行为的越来越复杂化,高速高性能的网络入侵检测和防御系统越来越受到重视,但是目前绝大部分研究都集中在网络入侵检测系统方面.但是由于入侵检测系统的局限性,同时不具有实时阻断的功能,目前入侵防御技术和系统更受人们的重视.由于入侵防御系统涉及很多关键技术和技术难点,因此目前千兆级的实用的入侵防御系统并不多见,论文提出了一个实现网络入侵防御系统的基于硬件的框架,这个框架实现了网络入侵防御系统的所有功能.测试表明具有实用性.
With the improvement of network speed and the more complicated of network intrusion behavior, high speed and high performance network intrusion detection and prevention systems are more and more needed, but most of researches and developments are focused on network intrusion detection systems now. Because of the shortcoming of network intrusion detection system and the advantage of network prevention with real time blocking, network prevention system is more and more welcome and needed. However, network prevention system includes a lot of key technologies and difficulties, practical Gigabit network prevention systems are handful on the market. In this paper, a hardware-based framework for implementing network intrusion prevention system is presented, this framework integrates and implements the functionality of network prevention system.
出处
《小型微型计算机系统》
CSCD
北大核心
2006年第11期2025-2029,共5页
Journal of Chinese Computer Systems
关键词
入侵检测
入侵防御
内容匹配
intrusion detection
intrusion prevention
content Matching