网络信息监测技术是下一代互联网安全防御体系的关键技术.目前存在的网络流量监测技术大多没有动态预警和控制功能,且不支持IPv6.本文给出了一个可扩展的网络流量动态监测预警体系,该体系基于“流”的监测方式,形成以流量分析、入侵检测和统计报表联动预警控制的动态安全防御体系,能够以串联或者并联方式部署,灵活性高.实验表明,该体系数据获取率高,通过各个模块的联动,有效提高了网络监控实效.
Network information monitoring technology (NIM T) is a key technology to the next generation of network defense system. The existed NIMTs mostly do not have a dynamic warning and controlling function, neither support IPv6. This paper designs a scalable network dynamic monitoring and warning system. It forms an associated dynamic security defense system based on traffic analysis, intrusion detection and statistics table. It can be connected in parallel or series with high flexibility. Experimental results show that it can significantly increase the efficiency of data capture and network monitoring through the association of various modules.