• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

J4 ›› 2006, Vol. 28 ›› Issue (2): 33-35.

• 论文 • 上一篇    下一篇


汪洁[1] 胡华平[2] 唐勇[2]   

  • 出版日期:2006-02-01 发布日期:2010-05-20

  • Online:2006-02-01 Published:2010-05-20


目前大部分安全技术被设计用来阻止未授权的可疑行为获取资源,同时案例工具是作为一种防御措施被布置,所以它们对网络的保护有限。本文在分析国内外研究现状的基础上,针对现有网络安全工具在入侵检测以及防护等方面的不足,设计和实现了分布式虚拟陷阱系统。该系统所分布的代理由混合Honeynet和低交互的Honeypot构成,降低了Hooneypot固有的风险,增加了模拟的真实性,弥补了现有各类Homeypot的不足。系统作为一种动态安全防御机制,可以有效地提高大规模网络的錾体安全性,是传统童例机制 的有力补充.

关键词: 网络安全 入侵检测 蜜罐 陷阱网络


Most security technologies are designed to prevent unauthorized activities for resources. And security tools are put into place as a defensive measure . Therefore there are some shortcomings in network protection. After analyzing the research situation and the shortcomings of security tools in intrusio n detection and system protection, a distributed virtual honeynet system is studied and implemented. The system is composed of a Hybrid Virtual Honeynet  and a low-interaction Honeypot. Which reduces the inherent risk of Honeypot, and adds the simulation's trueness, and it makes up for the shortcomings   of existing different types of honeypots. As a dynamic security defensive mechanism, it improves effectively the in tegral safety of large-scale networ ks, and is a completely supplement of traditional security mechanisms.

Key words: network security, intrusion detection, honeypot, honeynet