节点文献
Windows平台的Snort入侵检测系统
Intrusion Detection System Based on Snort and Windows
【摘要】 Windows平台Snort入侵检测系统包括:Winpcap(抓包库),Snort(入侵探测器),Mysql(基于SQL数据库服务器),IIS,ACID(基于Web入侵事件数据库分析控制台)。Snort对数据包进行规则匹配并检测入侵行为和探测活动,IIS为ACID提供网络服务,ACID查看分析Mysql数据库数据,生成网络入侵事件报告图表。
【Abstract】 Intrusion detection system based on Snort and Windows includes Winpcap (A packet filter), Snort (A lightweight network intrusion detection system), Mysql (A database sever based on SQL), IIS, ACID (Analysis Console for Intrusion Databases using a web browser). The data packet was matched by Snort through rules and intrusion and detection action was detected by Snort. The network serve was supplied by IIS for ACID, and the data of MySQL database were viewed analyzed by ACID to create the report diagrams for detection events of network.
- 【文献出处】 兵工自动化 ,Ordnance Industry Automation , 编辑部邮箱 ,2005年02期
- 【分类号】TP393.08
- 【被引频次】11
- 【下载频次】431