摘要
The principle of attack defense realized in a firewall embedded in Linux kernel has been discussed. Based on the analysis of characteristic of network attack, the mechanism and architecture of attack defense are built in accordance. Through the introduce of stateful detection, the attack defense framework is built to determine and prevent the deportment of various attack. Thereafter, the architecture of attack-removed system can be expected to be general-purpose and easy to be extended. The performance of the whole firewall system is enhanced because the attack defense system effectively overcomes the limitation of conventional packet-filtering firewall. The experiments for validating the improvement of IP security are given as well as the research work.
| 源语言 | 英语 |
|---|---|
| 页(从-至) | 509-512 |
| 页数 | 4 |
| 期刊 | Dianzi Keji Daxue Xuebao/Journal of the University of Electronic Science and Technology of China |
| 卷 | 34 |
| 期 | 4 |
| 出版状态 | 已出版 - 8月 2005 |
| 已对外发布 | 是 |
指纹
探究 'Attack defense system based on state detection firewall of Linux' 的科研主题。它们共同构成独一无二的指纹。引用此
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver