随着无线技术的普及和发展,无线网络的安全问题愈加严重,尤其是当无线终端本身可以自由接入并随机移动时,许多安全事件如移动用户身份窃取、攻击入侵、木马等很容易发生。目前开发的系统主要针对的是计费问题及对服务器的攻击,而对整个网络的管理,实现用户的行为监控,以及当网络中发生安全事件时,如何追溯事件的源头以进行有针对的处理等方面所做的工作较少。系统通过PORTAL+RADIUS认证对无线网络用户进行身份认证,并且利用WLAN 定位技术对恶意的移动终端位置进行追踪和定位,确保追溯到安全事件的源头,实现对移动用户可授权、对可疑用户进行身份与位置的双重溯源管理。
With the popularisation and development of wireless technology,security issues of wireless network become more serious.Espe-cially when the wireless terminals can freely access and randomly move,many security events easily occur,such as mobile users’identity theft,intrusion and attack,Trojans,etc.At present the systems developed mainly focus on billing issues and the attacks against the servers, but there are few contributing to the management of the whole network,to realising users’behaviour monitoring,as well as to how to trace the source of the events when the security incidents occur in network and the targeted processing countermeasures.The system presented in the paper provides authentication for wireless network users through PORTAL+RADIUS authentication technology,and uses WLAN positioning technology to track and locate the malicious mobile terminal position,so as to ensure to trace back to the source of the security events.The system achieves that the mobile users can be authorised and the double traceability management is imposed on the suspicious users in both identity and location.