节点文献

关于IDS和防火墙有机整合的探讨

RESEARCHI ON COMBINE FIREWALL WITH IDS

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 蔺德军宁蕾

【Author】 LIN Dejun1,NING Lei2 (1.Information Engineering College of Qingdao University,Qingdao 266071,China;2.Qingdao Professional Technic College,Qingdao 266071,China)

【机构】 青岛大学信息工程学院青岛职业技术学院 山东青岛266071山东青岛266071

【摘要】 为提高内部网络的安全性,通常同时采用防火墙和入侵检测系统(IDS),但是两者都有无法克服的缺点。防火墙是整个内部网络的门户,为了不影响网络的吞吐量,不宜采用深入的检测;而IDS在防火墙后运行,可以深入检测,但是一旦发现入侵,能采取的措施却极为有限,最多只能断开连接,对于后续的相同的攻击无能为力。因此应该建立一种机制,让IDS发现的入侵规则及时通知防火墙,阻断同样类型的攻击,如果把两者整合到一起,将发挥更大的优势。

【Abstract】 Firewall and Intrusion Detection System(IDS) are the most common and necessary utility in network security.Each has special weakpoint that can′t be removed,the firewall can not detect data packet much more throughly,while it′s the gate of whole intranet.On the contrary ,IDS can detect much carefully,but IDS has not much means to do with next just the same kind of Instrusion.If they give help each other,they will give more powerful function. 

【关键词】 防火墙入侵检测系统检测规则
【Key words】 firewallIDSdetecting rules
  • 【文献出处】 青岛大学学报(工程技术版) ,Journal of Qingdao University Engineering & Technology Edition , 编辑部邮箱 ,2003年02期
  • 【分类号】TP393.08
  • 【被引频次】12
  • 【下载频次】50
节点文献中: 

本文链接的文献网络图示:

本文的引文网络