为了促使P2P网络向良性的方向发展,针对目前网络中存在的常见安全问题,进行了P2P网络环境下的多维计算机取证模型研究。在模型的取证阶段,通过选取合适的信任信息存储机制和档案节点数据结构,结合基于聚类的推荐信任评估方法,实现了原始数据和证据数据的获取,以及部分取证策略库的制定。
In order to promote the development of P2P networks towards a positive direction, the study on the multi-dimension computer forensics model under P2P Environment is conducted for the common security problems in network at present. In the evidence acquisition phase of the model, by selecting appropriate trust information storage mechanism and file node data structure, combining cluster-based recommendation trust evaluation method, the acquisition of original data and evidence data as well as the establishment of forensics policy repository has achieved.