首页> 外国专利> NETWORK PACKET INTRUSION DETECTION SYSTEM AND METHOD BASED BY LINUX

NETWORK PACKET INTRUSION DETECTION SYSTEM AND METHOD BASED BY LINUX

机译:基于LINUX的网络数据包入侵检测系统及方法

摘要

PURPOSE: A packet intrusion detecting system in a Linux based network and a method thereof are provided to successively detect intrusion for other network packets during examining intrusion for the Linux based network. CONSTITUTION: A kernel space driving unit(110) receives a policy for network packets from a user space driving unit(120). The kernel space driving unit applies the policy to the network packet stored in a kernel packet queue. The user space driving unit stores a user packet queue to the network packet transmitted from the kernel space driving unit. The user space driving unit establishes the policy for the network packet. The user space driving unit transmits the established policy to the kernel space driving unit. [Reference numerals] (101) Application process; (102) Network card; (110) Kernel space driving unit; (111) Packet collection analysis module; (112) Policy check module; (113) Kernel policy rule DB; (114) Kernel packet queue; (115) Queue monitoring module; (116,121) Net link transeiving module; (117) Queue and policy processing module; (120) User space driving unit; (122) Authentication request processing module; (123) User packet queue; (124) User questionnaire module; (125) User policy rule DB
机译:目的:提供一种基于Linux的网络中的分组入侵检测系统及其方法,以在检查基于Linux的网络的入侵期间相继检测其他网络分组的入侵。构成:内核空间驱动单元(110)从用户空间驱动单元(120)接收用于网络分组的策略。内核空间驱动单元将策略应用于存储在内核包队列中的网络包。用户空间驱动单元将用户分组队列存储到从内核空间驱动单元发送的网络分组。用户空间驱动单元为网络分组建立策略。用户空间驱动单元将所建立的策略发送给内核空间驱动单元。 [附图标记](101)申请过程; (102)网卡; (110)内核空间驱动单元; (111)分组收集分析模块; (112)策略检查模块; (113)内核策略规则数据库; (114)内核分组队列; (115)队列监控模块; (116,121)网络链路收发模块; (117)队列和策略处理模块; (120)用户空间驱动单元; (122)认证请求处理模块; (123)用户分组队列; (124)用户问卷调查模块; (125)用户策略规则数据库

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号