基于防火墙日志信息的入侵检测研究

被引:16
作者
黄锦
李家滨
机构
[1] 上海交通大学网络中心
关键词
入侵检测; 防火墙; 网络安全; 日志;
D O I
暂无
中图分类号
TP393.08 [];
学科分类号
0839 ; 1402 ;
摘要
首先介绍了入侵检测系统的发展过程,随后讨论了通过对包过滤型防火墙的日志信息进行分析,建立一个基于防火墙日志信息的准实时的网络入侵检测系统。
引用
收藏
页码:115 / 117
页数:3
相关论文
共 7 条
[1]  
http://www.docshow.net .
[2]  
Implementing a Generalized Tool for Monitoring. Ranum M T,Landfield K,Stolarchuk M,etc. . 1988
[3]  
Building a Security Monitor with Adaptive User Work Profiles. Halme L,Kahn B. Proceedings of the 11th National Computer Security Conferece . 1988
[4]  
Computer Security Threat Monitoring and Surveillance. Anderson J P. Technical Report Contract 79F .
[5]  
An Intrusion Detection Model. Denning DE. IEEE Transactions on Software Engineering . 1987
[6]  
Expert Systems in Intrusion Detection:A Case Study. Sebring M M,Shellhouse E,Hanna M E,etc. Proceedings of the 11th National Computer Security Conferece . 1988
[7]  
Automated Audit Trail Analysis and Intrusion Detection: ASurvey. Lunt T F. Proceedings of the 11th National Computer Security Conferece . 1988