Dissertation > Excellent graduate degree dissertation topics show
Network Monitoring System Deployment and Integration
Author: NADJAK KAN\' SAM(KangSang)
Tutor: ChenZhiGang
School: Central South University
Course: Computer Science and Technology
Keywords: IDS/IPS Firewall IPSec VPN STATL language
CLC: TP393.08
Type: Master's thesis
Year: 2011
Downloads: 45
Quote: 0
Read: Download Dissertation
Abstract
|
In the enterprise business environment, the security solution should not be simply regarded as an optional element of reducing system risk, but should be considered as a significant factor of maintaining business functions and improving productivity efficiency. When enterprises are being faced with the information security attacks from network intrusion, network safety will be a much more pressing issue. However, none of the current security tools on the market can satisfy the system security requirements alone, which says that the research on the integration of security tools and on the deployment of highly efficient network monitoring system is of great importance for improving system protection capacity.Firstly, in the thesis we provided an in-depth analysis on the cost for enterprise network monitoring and the deployment of security management device; And by conducting a detailed investigation towards many of the victim companies, we acquired an overview of the attack vectors and vulnerability flaw form that the victim companies are suffering, and then we enumerated all the security tools, such as Firewall, IDS, IPS, IPSec VPN, and discussed their relevant disadvantages in meeting system security requirements. Secondly, based on the analysis of the monitoring process of the existent security tools, we proposed a Firewall engine strategy based on the status data packet of firewall detector, and by introducing the automated translation technology based on the combination of STATL language and Snort rules, we designed a network monitoring system with the integration of user interface characteristics. Finally, in the experiment we constructed an enterprise network simulation environment, by simulating the monitoring process of Firewall and Snort, we completed the integration and deployment of the Firewall, IPSec VPN and IDS on SPAN(Switch Port Analyzer) technology. Simulation results substantially proves that our network monitoring system based on performance integration can effectively enhance the system’s overall security level, and make the system monitoring process much more simple.
|
Related Dissertations
- Design and Implementation of Assistant Management System Server Based on Hardware Firewall,TP393.08
- Firewall and three switch - based campus network security policy research,TP393.08
- Gansu Fuyuan Chemical analysis and design of integrated office platform,TP311.52
- The Design and Implementation of A Military University Network in Security and Reliability,TP393.18
- Fast protocol identification based firewall system design and implementation,TP393.08
- Firewall policy conflict detection and visualization,TP393.08
- Research on Trojan Horse Transmis Sion Technology Based on HTTPS and WEB SERVICE Shanghai Jiao Tong University,TP393.08
- Research and Implementation of High Performance Rule Matching Key Technology for IPv6 Firewall,TP393.08
- Research of Key Technology of Firewall Security Policy Configuration,TP393.08
- Uncertain reasoning algorithm of fuzzy rule - based matrix transform,TP18
- Managing Congestion in Mobile Devices by Combating TCP Based Attacks,TP393.08
- Design and implementation of network security technology application and reporting system in the e-government system,TP393.08
- Design and Implementation of Soft-Switch Based SIP Gateway,TN915.05
- Legal Research on the Financial Firewall Regulations,D922.28
- Research and Implementation of Computer Remote Control Based on Trojan Horse Technology,TP273
- Research and Design of Intelligent Generation of Filtered Rules,TP393.08
- Network worm defense research,TP393.08
- Comprehensive host -based firewalls and intrusion detection security system,TP393.08
- Research and Implementation of the Packet Filtering Technology in Integrated Security Gateway Firewalls,TP393.08
- Research of Hierarchical Distributed Intrusion Detection System,TP393.08
CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net Mobile
|