You are here: hacking technology > invades the examination > Content
Hot Articles
Recommend Articles
New Articles
Invasion examination technology: The network security third strength
  Add date: 07/25/2008   Publishing date: 07/25/2008   Hits: 1
Total 2 pages, Current page:1, Jump to page:
 
Network security technological development today, and kills the poisonous system except the firewall the protection, the invasion examination technology also becomes resists the hacker attack the effective way. Although the invasion examination technology unceasingly is also consummating during the development, but the invasion examination product's market was already getting bigger and bigger, has started the network security third upsurge truly.

The invasion examination technology is to guarantee that computer system's security designs and the disposition one kind can discover and in promptly the reporting technology system authorized or the abnormal phenomenon technology, is one kind uses in examining in the computer network to violate the security policy behavior the technology.

After the invasion examination is considered is firewall's second security strobe. IDS mainly uses for to monitor and the analysis user and system's activity, may distinguish the reflection known attack the active pattern and reports to the police to the related public figure. To the deviant behaviour pattern, IDS must carry on the statistical analysis by the report form form. The product provides the function also needs to appraise the important system and the data file integrity.

A successful invasion examination system, not only may cause the system manager time understanding network system, but can also give the cyber security policy the making to provide the basis. It should manage the disposition to be simple, causes the laymen to obtain the network security very easily. The invasion examination's scale should also according to the network size, the system structure and the security requirements change changes. Invasion examination system after discovery invasion, will make the response promptly, including cut-off network connections, record event and warning and so on. The IDS classification invasion examination through to invades the behavior the process and the characteristic conducts the research, causes the safety system to invade the event and the invasion process makes the real-time response.

IDS product classification

At present in the market IDS product technologically speaking, basic may divide into two broad headings: Based on network product and based on main engine's product. The mix invasion examination system may make up some based on the network and based on main engine's one-sided flaw. In addition, the document complete inspection tool may also regard as is a kind of invasion examination product.

Lays aside based on the network invasion examination product in the quite important webpage, carries on the characteristic analysis to each data packet or the suspicious data packet. The commercialized product includes: Overseas ISS RealSecure Network Sensor, Cisco Secure IDS, CA e-Trust IDS, Axent NetProwler, as well as domestic promise net peaceful KIDS, north data processing center NISDetector, opens the bright stars day full hacker to invade the examination and the early warning system and the branch network prestige “the deva-eye” the network invasion detection system and so on.

 
Other pages: : 1 * 2 * Next>>
Prev:The deployment invasion defense system is urgent Next:The network invasion examination system (IDS) chats

Comment:

Category: Home > invades the examination