首页 | 官方网站   微博 | 高级检索  
     

基于正则表达式的协议行为审计技术研究
引用本文:张运明,王勇军.基于正则表达式的协议行为审计技术研究[J].现代电子技术,2010,33(19):97-100.
作者姓名:张运明  王勇军
作者单位:国防科学技术大学,计算机学院,湖南,长沙,410073
摘    要:协议行为审计技术通过在线深度解析应用层协议来分析用户行为并进行审计,为人工分析监测网络安全事件提供依据,达到增强网络安全的目的。重点探讨了利用正则表达式进行协议行为解析的技术,并提出一个灵活、可扩展的协议行为审计技术框架。基于该技术框架实现了一个支持HTTP协议、SMB协议和TNS协议的协议行为审计系统,通过详细的实例介绍阐明了利用正则表达式进行协议行为解析技术在该系统中的运用过程。最后,该系统的测试结果验证了基于正则表达式的协议行为审计技术的有效性。

关 键 词:协议行为审计  正则表达式  协议解析  安全审计  信息安全

Research of Protocol Behavior Audit Technology Based on Regular Expressions
ZHANG Yun-ming,WANG Yong-jun.Research of Protocol Behavior Audit Technology Based on Regular Expressions[J].Modern Electronic Technique,2010,33(19):97-100.
Authors:ZHANG Yun-ming  WANG Yong-jun
Affiliation:1. Institute of Continuing Education, National University of Defense Technology, Changsha 410073, China 2. Institute of Computer, National University of Defense Technology, Changsha 410073, China)
Abstract:The users' behavior is analyzed and the audit is performed with the protocol behavior audit technology through the on-line analysis of the application layer protocol The evidence is provided for monitoring network security by the protocol behavior audit, which realizes the purpose of enhancing the network security. The technology of the protocol behavior analysis is discussed emphatically with the regular expressions. A technology framework of the flexible and scalable protocol behavior audit is proposed. Based on the technology framework, a protocol behavior audit system was implemented for auditing the HTTP protocol, SMB protocol and TNS protocol. The process of using the technology of protocol behavior analysis based on regular expressions in this system is elaborated through the introduction of the detailed example. The testing results of the system verify the effectiveness of the protocol behavior audit technology based on regular expressions.
Keywords:protocol behavior audit  regular expression  protocol analysis  security audit  information security
本文献已被 维普 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司    京ICP备09084417号-23

京公网安备 11010802026262号