摘要
从最早利用协议分析仪发送攻击特征,采用黑客工具,到网络攻击数据的录播重放,IDS测试方法和工具随着入侵检测技术和网络攻击的发展而不断发展。论文提出了一种新的基准测试技术,它基于全新设计的网络攻击描述语言,对各种网络攻击进行统一规范的描述形成测试脚本库,然后通过模拟攻击机和牺牲主机的一体化结构,产生各种网络攻击会话,从而达到测试的目的。
From sending signatures,using hacking tools,to replaying the traffics of network attacks,the methodologies and tools of IDS test are developing along with the developing of intrusion detection and hacking,This paper proposes a new approach for IDS benchmark test,which is based on a new network attack description language,This approach can descript all the network attack activities in an unified way to form the database of test scripts,Furthermore,based on the united architecture simulating attack host and sacrificed host,it realizes the real creation of network attack sessions.
出处
《计算机工程与应用》
CSCD
北大核心
2005年第33期1-4,共4页
Computer Engineering and Applications
基金
国家信息关防与网络安全可持续发展计划资助(编号:2002-研-3-014)
关键词
入侵检测系统
基准测试
攻击描述语言
一体化结构
Intrusion Detection System,benchmark test,attack description language,united architecture