摘要
首先分析了P2DR网络安全模型和分布式网络安全模型,在吸收上述2个安全模型优点的基础上,考虑接入网络复杂性的基础上,提出一种P2TD3R安全网络安全模型,该模型将P2DR由网络入口点的检测拓宽到对网络的全面检测,采用端口镜像策略,规避了分布式安全模型对用户网络性能造成影响的缺点。最后,根据P2TD3R安全模型给出了组网实例,编写相应的检测软件和具体的实施细节。
The P2DR network security model and distributed network security model are analyzed. A P2TD3R security network security model is proposed based on the merit utilization of the two security models and the consideration of the access network complexity. The detection range of P2DR is broadened by the model from the network access point detection to the entire network detection. Because of the application of the port mirror-image strategy; completely transparent to the network nodes, the shortcomings that the distributed security model affects the users' network performance are avoided. The networ- king examples are given according to the security model P2TD3R. The corresponding test software and the implementation details are compiled.
出处
《现代电子技术》
2012年第2期47-50,共4页
Modern Electronics Technique
基金
安徽大学211工程三期教学质量工程基金资助项目(XJ200921)