基于蜜罐的主動網(wǎng)絡(luò)安全系統(tǒng)的研究與實(shí)現(xiàn)
Research and Implementation of an Active Network Security System Based on Honeypots
-
摘要: 采用自動的大規(guī)模掃描,在發(fā)現(xiàn)系統(tǒng)漏洞后,能夠使對手在短時(shí)間內(nèi)攻破計(jì)算機(jī)系統(tǒng)。傳統(tǒng)的蜜罐系統(tǒng)在處理這些問題時(shí)有很多不足,因?yàn)槠浜灻强蓹z測的。針對這些不足,本文從另一個(gè)角度構(gòu)造了一個(gè)基于蜜罐的主動網(wǎng)絡(luò)安全系統(tǒng)(Active Network Security System,ANSS)的誘騙系統(tǒng)。 ANSS位于真實(shí)的網(wǎng)絡(luò)環(huán)境中,可以自始至終捕獲到黑客的行為。仿真實(shí)驗(yàn)表明,ANSS使網(wǎng)絡(luò)的安全性能達(dá)到了一個(gè)較高的水平,對入侵行為的監(jiān)控和預(yù)防有著重要的意義。
-
關(guān)鍵詞:
- 網(wǎng)絡(luò)安全; 誘騙系統(tǒng); 蜜罐
Abstract: Exploit automation and massive global scanning for vulnerabilities enable adversaries to compromise computer systems shortly after vulnerabilities become known. Traditional honeypots have shortcomings to deal with these problems because their signatures can be inspected. Aiming at current research state, the paper constructs an Active Network Security System (ANSS) from another point of view, i.e., ANSS situated in a real network circumstance. ANSS is the same as other systems in Internet, and it can capture actions of hacker from beginning to end. The simulation results indicate that ANSS can elevate networks security performance to a higher level and ANSS has important impact on forecast and monitor attack activities. -
計(jì)量
- 文章訪問數(shù): 2550
- HTML全文瀏覽量: 90
- PDF下載量: 822
- 被引次數(shù): 0