|
With the rapid development of computer network , network information system supporting role in economic development , national security , social stability are growing . The intensified scramble around access to information , the use of information systems by the growing threat of attack , information security capabilities have become an important symbol of national strength . There are a variety of network security technology , and many of them have been a wide range of applications , including firewalls and intrusion detection is the most widely used of the two technologies , but the two security technology when used alone , there are defects in this topic the main content of the study is how comprehensive utilization of two security technology , and protection system integration to build a multi-level attack detection . Firstly, firewall and intrusion detection technologies -depth analysis and summary points out the advantages and disadvantages of both . On this basis , the Security Management Center as the core design ideas , firewalls and intrusion detection indirectly, interactive way to build a distributed attack detection and protection systems , the system model and the structure ; designed and implemented based on network intrusion detection subsystem and packet filtering firewall based on NDIS subsystem , given the design of the safety management center . The communication between the various subsystems and security management center using encryption , signature , authentication and security mechanisms . In order to improve system reliability , safety and efficiency , this paper also proposed two based intrusion alarm correlation analysis model , constructed based on an interactive model based on correlation analysis , and description . Finally , this work and further study summary and outlook .
|