位置:成果数据库 > 期刊 > 期刊详情页
基于覆盖网的协同式网络安全防护与分析系统
  • ISSN号:1671-1122
  • 期刊名称:《信息网络安全》
  • 时间:0
  • 分类:TP393.08[自动化与计算机技术—计算机应用技术;自动化与计算机技术—计算机科学与技术]
  • 作者机构:[1]清华大学,北京100084
  • 相关基金:国家973项目[2011CD302600、2011CB302805、2012CB315800]; 国家自然科学A3重点基金项目[61161140320]
中文摘要:

互联网安全形势依然严峻,网络安全事件层出不穷,虽然网络安全系统一直在不断的发展,但是传统安全系统间缺少协同机制,难以实施统一的安全策略,无法发挥整体优势。文章提出了一种基于覆盖网的协同式网络安全防护与分析系统,通过覆盖网架构,将原本孤立的网络安全设备互连起来,协同工作,分布式感知与控制管理网络流量,集中分析与处理安全事件,形成全程全网的网络安全事件管理与解决方案。该方案充分利用了覆盖网技术、P2P通讯技术、可信网络连接技术、高速流量记录查询技术和云计算技术等现有的技术来架构一个实用的协同网络安全防护与分析系统。

英文摘要:

Internet security problem is still not well addressed as there are many network security event occurs,such as sending huge volumes of spam or launching Distributed Denial-of-Service(DDoS) attacks to victim targets.These attacks are launched by attackers who controlled a well-organized distributed network consists of a larger volume of hosts called bots.It is difficult to suppress such a distributed,widely,and automotive organized botnet without collaborative effort among the well deployed network security appliances(e.g.Unified Threat Management,i.e.UTM) in Internet.In this paper,we propose a practical Collaborative Internet Security System based on Overlay Network.We design a Peer-to-Peer communication protocol,a collaborative module,and retrofit security functions for UTM to virtually interconnect these UTMs to build a Security Overlay Network.In this Security Overlay Network,each UTM can communicate with each other to exchange security rules,events and signatures,and the huge size of signatures and security rules file can be disseminated easily,also ensure the security rules version in UTM will be consistency.Our design leverages existing technology to fully construct a comprehensive Collaborative Internet Security System for practical use.In the real deployment of our Security Overlay Network,several concrete applications,experiments and demos are also conducted and the results are also presented.

同期刊论文项目
同项目期刊论文
期刊信息
  • 《信息网络安全》
  • 主管单位:中华人民共和国公安部
  • 主办单位:公安部第三研究所 中国计算机学会 计算机安全专业委员会
  • 主编:关非
  • 地址:北京市海淀区阜成路58号新洲商务大厦301B
  • 邮编:100142
  • 邮箱:gassbj@163.com
  • 电话:010-88114408 88111078 88118778
  • 国际标准刊号:ISSN:1671-1122
  • 国内统一刊号:ISSN:31-1859/TN
  • 邮发代号:4-688
  • 获奖情况:
  • 万方,同方,维普
  • 国内外数据库收录:
  • 被引量:6058