摘要
本文通过在网络侧集线器与用户主机侧交换机之间部署安全联动设备防火墙,以及并联在集线器与交换机之间的审计系统,提出一种基于HTTP包识别的网络安全设备联动方法.它基于网络信息安全领域入侵检测与防范技术,用以在线解决现有网络安全设备联动阻断技术的时效性较差的问题.最后,通过实验测试证明该方法实用有效.
The paper introduces a device linkage system on {irewall between the network side and the switch side of user host, and introduces the audit system connected in parallel between the hubs and switches. Then, the paper introduces a method based on HT'FP packet recognition network security device linkage, which is a technology of information security intrusion detection and prevention based on the network. It is mainly used to solve the existing network security equipment linkage blocking technology limitation poor problem. Finally, the test result shows that the method is practical and effective.
出处
《微电子学与计算机》
CSCD
北大核心
2013年第1期114-117,122,共5页
Microelectronics & Computer
基金
国家自然科学基金项目(60920109)
关键词
网络信息安全
设备联动
入侵检测
HTTP包识别
规则匹配
阻断处理
network information security
device linkage
intrusion detection
HTTP packet recognition
rule matching
block processing