摘要
本文首先介绍了入侵诱骗系统的概念,在此基础上给出一个结合环境切换技术的入侵诱骗系统原型,并以此原型为指导,设计出基于TCP层的环境切换子系统。论文提出了用户环境切换和用户连接切换中各种状态信息提取、迁移及恢复的方法、通过修改Linux内核,增加内核模块等方式实现环境切换子系统。
The article introduces the concept of Intrusion Deception System, gets the Intrusion Deception System prototype based on Environment Switch technology, and designs Environment Switch Subsystem based on the TCP. According to the features of Linux kernel, the article puts forward the methods of various state information's retrieving, migrating and recovering in user environment switch and user connection switch technologies. By means of modifying Linux kernel and adding kernel module, we implement the Environment Switch Subsystem based on the TCP laver.
出处
《微计算机信息》
2009年第18期78-80,共3页
Control & Automation
关键词
动态防御
入侵诱骗
环境切换
用户环境
用户连接
dynamic defensive
intrusion Deception
environment switch
user environment
user connection