|
With the growing popularity of computer network, the network has become a life and an integral part of the work. To protect the security of the network and to build a secure line of defense becomes the main task of network security experts. In recent years, new security technology continues to emerge, mainly including honeypot, air gaps and denial-of-service defenses, etc.The topic for the honey pot technology research, and based on this technology to build a honeypot technology-based early warning and analysis of network attack system, the honeypot system.This article describes how through the establishment of a virtual system, the establishment of logging and recording systems, the establishment of intrusion detection systems, the establishment of warning mechanisms and to set strategies to achieve the alarm early warning and analysis of network attack system, the honeypot system. And will be appropriate to discuss how to set up an early warning system, the deployment of rules, how to set up maintenance, analysis of the mechanism and response procedures.Construction of the entire system, will include the integration of existing products and tools, integration, also including some functional modules of the software utility tool development, this issue will be used in the development of part of the C / C + + language, Linux platform development tools for the use of gcc , windows platform using VC + + development tools. In this issue of the research process, we make full use of existing laboratory and real environment, a honeypot system architecture design and practice of careful verification, taking full account of the system safety and accuracy of its data, while taking into account the integrity and confidentiality, the software and hardware design, committed to the process optimization. After difficult development, testing and a large number of experiments, this proved to be an early warning and analysis of network attack system, the honey pot system is reasonable, feasible and has a good value and application prospect.
|