节点文献

虚拟蜜罐系统的设计

Design of Virtual Honeypot System

  • 推荐 CAJ下载
  • PDF下载
  • 不支持迅雷等下载工具,请取消加速工具后下载。

【作者】 连红连立祥

【Author】 LIAN Hong1, LIAN Li-xiang2 (1. Laboratory Center, Guizhou Radio & TV University, Guiyang 550004, China; 2. Automated Command Station, Guizhou Provincial Military Region, Guiyang 550002, China)

【机构】 贵州广播电视大学实验中心贵州省军区指挥自动化站 贵州贵阳550004贵州贵阳550002

【摘要】 根据虚拟蜜罐框架Honeyd的体系结构、模拟路由拓扑、配置命令及日志功能,设计了虚拟蜜罐系统HoneypotV,并将其部署在实际网络环境中。该系统通过模拟操作系统的TCP/IP栈建立蜜罐,采用与Nmap或Xprobe相同指纹的数据库模拟操作系统,以响应针对虚拟蜜罐的网络请求。可实现欺骗和诱骗、行为控制、入侵检测、被动探测和数据分析等几项功能,实验证实达到预期的目标。

【Abstract】 According to the virtual honeypot framework Honeyd architecture, simulates routing topology, configuration order and the logging, a virtual honeypot system called HoneypotV is designed and deployed in the real network circumstance. This system simulates operating system TCP/IP stack to establish the honeypot, adopts Nmap or the Xprobe identical fingerprint database simulation operating system, and responds in view of the virtual honeypot network request. The constructed honeypot system shows the function of deception and decoy, action control, intrusion detecting, passive detecting and data analysis. And the result shows the system achieved its anticipated purposes.

【基金】 贵州省科学技术基金资助(黔科通2005-8“IPv6互联网络的TCP/IP安全性研究”)
  • 【文献出处】 兵工自动化 ,Ordnance Industry Automation , 编辑部邮箱 ,2007年01期
  • 【分类号】TP393.08
  • 【被引频次】2
  • 【下载频次】217
节点文献中: 

本文链接的文献网络图示:

本文的引文网络