摘要
提出了一个防火墙日志分析系统的完整实现方案,对日志格式的特点、日志预处理方法进行了深入的分析。利用一个后台处理程序实现了日志数据的自动导入及维护,并提供了基于ASP.NET的用户查询界面。另外,后台程序还以用户自定义规则的形式,根据防火墙日志的统计结果实现自动报警,或以C#调用VBScript脚本的方式,自动地对防火墙设备进行配置,从而使防火墙的参数配置与日志相关联,具有一定的自适应性。
In this paper the author proposes a solution of firewall log analysis system, which may analyze fully the feature of log format and method of preprocessing, achieve log data import and maintenance automatically by running a backstage program, and provide a user query interface based ASP.NET. The backstage program will give an alert according to the log statistical results and user-defined rules, or, by a VBscript C# calling program, to configure the firewall device automatically. The configuration parameters of firewall device will create the relation with log, so that the firewall device will have some self-adaptability.
出处
《计算机时代》
2012年第2期64-65,68,共3页
Computer Era