计算机科学 ›› 2011, Vol. 38 ›› Issue (6): 140-141.

• 计算机网络与信息安全 • 上一篇    下一篇

一种改进的IPv4/v6网络入侵检测技术研究

武装,陈佳欣,王克平   

  1. (北京科技大学信息工程学院 北京100083);(北京信息科技大学计算机学院 北京100192);(中国人民大学网络与教育技术中心 北京100872)
  • 出版日期:2018-11-16 发布日期:2018-11-16
  • 基金资助:
    本文受电脑校园网环境下IPv6研究与应用开发(KM200711232012)资助.

Improved IPv4/v6 Network IDS Technology

Improved IPv4/v6 Network IDS Technology   

  • Online:2018-11-16 Published:2018-11-16

摘要: IPv6较IPv4有很多优势,如几乎无限的地址空间、自动配置机制、简化的报头结构、内置IPScc协议、扩展报头以及对流标签的支持等。基于网络应用日益丰富,而网络安全的威胁无处不在,人们越来越重视网络通信的安全,入侵检测系统已经得到了非常广泛的应用。伴随着IPv6时代的到来,借鉴IPv4环境下入侵检测的架构,综合利用协议分析技术、网络审计技术,并结合双找技术,提出一种改进型IPv4/IPv6环境下入侵检测系统模型,期望能在IPv6环境中提供高效、准确的网络攻击等行为的检测服务。

关键词: 入侵检测,协议分析,网络审计

Abstract: IPv6 has many advantages over IPv4, such as almost infinite address space, auto-configuration mechanism, a simplified header structure, built-in IPSec protocol, extension headers, and the convectivc label support and so on. Nowadays, Applications based on network become more and more popular, and people pay more attention to the security of network communication as before. Network products such as IDS have already played a very important role in network.As the IPv6 time is coming, this paper proposed an improved model of IPv6 Intrusion Detection System. , which using a combination of dual stack, IPv4 protocol analysis, and network auditing techniques. We expect this system can be applied in IPv6 environment as well as IPv4 to IPv6 transition environment to play a more efficient role to detect network intrulions.

Key words: Intrusion dctcction, Protocol analysis, Network audit

No related articles found!
Viewed
Full text


Abstract

Cited

  Shared   
  Discussed   
No Suggested Reading articles found!