Ãâ·Ñ×¢²á ²é¿´ÐÂÌû |

Chinaunix

  ƽ̨ ÂÛ̳ ²©¿Í ÎÄ¿â
1 ...2345678910
×î½ü·ÃÎÊ°å¿é ·¢ÐÂÌû
Â¥Ö÷: phiazat
´òÓ¡ ÉÏÒ»Ö÷Ìâ ÏÂÒ»Ö÷Ìâ

»ùÓÚSnortµÄÈëÇÖ¼ì²âϵͳ [¸´ÖÆÁ´½Ó]

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
91Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-27 23:43 |Ö»¿´¸Ã×÷Õß
7µÚÆßÕ ÆäËûһЩ¹¤¾ß\r\n±¾Õ½«½éÉÜÆäËûһЩ¹¤¾ß£¬²¢ÊÔͼÈÃÄãÁ˽âÈçºÎʹϵͳ¸ü¼Ó°²È«¡£ÏÂÃæÎÒÃÇÀ´½éÉÜÕâЩ¹¤¾ß¡£\r\n\r\nIDS ManagerÊÇ»ùÓÚWindowsͼÐνçÃæµÄSnort¹æÔòºÍÅäÖùÜÀí¹¤¾ß£¬Í¨¹ýËüÄã¿ÉÒÔ£º\r\n\r\n´ÓÒ»¸öÕýÔÚ¹¤×÷µÄSnort̽²âÆ÷ÉÏÏÂÔص±Ç°µÄÅäÖÃÎļþsnort.confºÍ¹æÔò¡£\r\nÐÞ¸ÄÅäÖÃÎļþºÍ¹æÔò¡£\r\n½«ÅäÖÃÎļþºÍ¹æÔòÉÏÔص½Ì½²âÆ÷ÉÏ¡£\r\n\r\nÓÃIDS ManagerÄã¿ÉÒÔ¹ÜÀí¶à¸ö̽²âÆ÷£¬Î¨Ò»Òª×¢ÒâµÄÊ£¬ÄãÐèÒªÔÚSnort̽²âÆ÷ÉÏÔËÐÐSSH·þÎñÆ÷¡£\r\n\r\nSnortSamÊÇÁíÍâÒ»¸ö¹¤¾ß£¬Ëü¿ÉÒÔ½«SnortÓë·À»ðǽÕûºÏÔÚÒ»Æð£¬Í¨¹ýËüºÍSnortÒ»Æð¹¤×÷£¬Äã¿ÉÒÔÐ޸ķÀ»ðǽµÄÉèÖᣵ«ÊÇÕâ¸ö¹¦ÄÜÈÔÓкܶàÕùÂÛ£¬ÒòΪËü¿ÉÄÜ»áʹ·À»ðǽÔâÊÜDos¹¥»÷¡£\r\n\r\n±¾ÕµÄÁíÍâÒ»¸öÂÛÌâÊÇ°²×°ACIDµÄweb·þÎñÆ÷µÄ°²È«ÐÔ£¬µ½ÏÖÔÚΪֹ£¬ÎÒÃÇ»¹Ã»ÓÐÉæ¼°µ½ÈçºÎ¼ÓÇ¿Õâ¸ö·þÎñÆ÷µÄ°²È«ÐÔ£¬ÈκÎÈ˶¼¿ÉÒÔ·ÃÎÊACID¿ØÖÆ̨²¢É¾³ýSnortËùÊÕ¼¯µÄÐÅÏ¢£¬ÎÒÃÇÉÔºó»á½â¾öÕâ¸öÎÊÌâ¡£

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
92Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-27 23:43 |Ö»¿´¸Ã×÷Õß
7.1 SnrotSam\r\nSnortSam¿ÉÒÔʹSnortÓë×î³£¼ûµÄһЩ·À»ðǽЭͬ¹¤×÷£¬Ìṩ·À»ðǽ/IDSÕûºÏ½â¾ö·½°¸¡£ÔÚIDS̽²âµ½ÈëÇÖµÄʱºò£¬Ëü¿ÉÒÔÉèÖ÷À»ðǽÀ´×èÖ¹¶ñÒâµÄÊý¾Ý»òÕßIPµØÖ·¡£ÔÚhttp://www.snortsam.net/Äã¿ÉÒԵà ... ö¹¤¾ß°üÀ¨Á½¸ö²¿·Ö£º\r\n1¡¢        Ò»¸ö°²×°µ½Snort̽²âÆ÷ÉϵÄSnortÊä³ö²å¼þ¡£\r\n2¡¢        Ò»¸ö°²×°µ½¿¿½ü·À»ðǽ»ò·À»ðǽ±¾ÉíËùÔڵĻúÆ÷ÉϵĴúÀí¡£Snortͨ¹ý°²È«Á¬½ÓÓëÕâ¸ö´úÀíͨѶ¡£\r\nµ½Ä¿Ç°ÎªÖ¹£¬Õâ¸ö¹¤¾ßÖ§³ÖÒÔϵķÀ»ðǽ£º\r\n• »ùÓÚ IP filterµÄ·À»ðǽ\r\n• Checkpoint Firewall-1\r\n• Cisco PIX\r\n• Netscreen\r\n\r\nËüµÄÊä³ö²å¼þÐèÒªÓëSnortÒ»Æð±àÒ룬Ëü»áÌṩһЩеĹؼü×Ö£¬¿ÉÒÔÓÃÀ´¿ØÖÆ·À»ðǽµÄÐÐΪ¡£\r\nÔÚÒ»¸öÓÃCheckPiont·À»ðǽµÄµäÐÍ·½°¸ÖУ¬Äã¿ÉÒÔÔÚ·À»ðǽ±¾ÉíÔËÐÐSnortSam´úÀí¡£Èçͼ7-1Ëùʾ£¬Ò»¸öSnort̽²âÆ÷ÕýÔÚ¿ØÖÆÁ½¸öCheckPoint·À»ðǽ¡£CheckPoint·À»ðǽ¿ÉÒÔÔËÐÐÔÚLinux¡¢WindowsºÍÆäËûһЩËüËùÖ§³ÖµÄUnixϵͳÉÏ¡£\r\nÈç¹ûÄãµÄ·À»ðǽ²¢·ÇCheckPointÕâÑùµÄÈí¼þ·À»ðǽ£¬Äã¿ÉÒÔÔÚ¿¿½ü·À»ðǽµÄ»úÆ÷ÉÏÔËÐдúÀí£¬ÎªÕâ¸ö´úÀí°²×°Ä³ÖÖ²å¼þÀ´¿ØÖÆÒ»ÖÖÌض¨µÄ·À»ðǽ¡£ÀýÈ磬Èç¹ûÄãÐèÒª¿ØÖÆCisco·ÓÉÆ÷µÄ·ÃÎÊÁÐ±í£¬Äã¿ÉÒÔÔÚSnortSamÍøÕ¾ÉÏÏÂÔØÏà¹ØµÄ²å¼þ¡£²Î¼ûͼ7-2¡£\r\n¹ØÓÚSnortSamµÄÎĵµ¡¢Ê¾ÀýÒÔ¼°ÈçºÎ°²×°µÄÐÅÏ¢¿ÉÒÔÔÚËüµÄÍøÕ¾ÕÒµ½¡£µ«ÊÇÇë×¢ÒâÈç¹ûÅäÖò»µ±£¬ÓÃÕâÑùµÄ¹¤¾ß¿ÉÄܻᵼÖÂDoS¹¥»÷£¬ÀýÈ磬ijÈË·¢Ë͹¹ÔìÌØÊâµÄÐÅÏ¢£¬¿ÉÄÜ»áʹ·À»ðǽ×èÖ¹ºÏ·¨µÄ·þÎñÆ÷µÄͨѶ£¬±ÈÈçÄãµÄDNS·þÎñÆ÷µÈ¡£

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
93Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-27 23:43 |Ö»¿´¸Ã×÷Õß
7.2 IDS Policy Manager\r\nIDS Policy ManagerÊÇ»ùÓÚWindowsͼÐνçÃæµÄ¹¤¾ßËü¿ÉÒÔÓÃÀ´¹ÜÀíSnortÅäÖÃÎļþºÍ¹æÔò¡£Äã¿ÉÒÔÔÚhttp:// activeworx.com/idspm/ÏÂÔØ¡£Æô¶¯Õâ¸öÈí¼þ£¬Äã¿ÉÒÔ¿´µ½Í¼7-3ËùʾµÄ´°¿Ú¡£\r\n¿ªÊ¼µÄʱºò£¬Õâ¸ö´°¿ÚÊǿհ׵ģ¬ÏÂÃæÓÐ3¸ö±êÇ©£¬·Ö±ðÊÇ£º\r\n\r\n¡°Sensor Manager¡±±êÇ©Ò³£¬ÏÔʾÄãÓÃÕâ¸ö¹¤¾ßËù¹ÜÀíµÄ̽²âÆ÷¡£¿ªÊ¼µÄʱºò£¬ÁбíÖÐûÓУ¬ÒòΪÄ㲢ûÓÐÌí¼ÓÈκÎ̽²âÆ÷¡£Æô¶¯µÄʱºò£¬Õâ¸öÒ³ÃæÊÇĬÈÏÒ³Ãæ¡£\r\n¡°Policy Manager¡±±êÇ©Ò³£¬ÏÔʾËùÅäÖõIJßÂÔ¡£²ßÂÔ°üÀ¨snort.conf²ÎÊýºÍ¹ØÓÚÕâ¸ö²ßÂԵĹæÔòÁÐ±í¡£\r\n¡°Logging¡±±êÇ©Ò³ÏÔʾÈÕÖ¾ÐÅÏ¢\r\n\r\nµã»÷±êÇ©¿ÉÒÔÇл»µ½ÏàÓ¦µÄ±êÇ©Ò³¡£Äã¿ÉÒÔµã»÷Sensor²Ëµ¥²¢Ñ¡Ôñ¡°Add Sensor¡±À´Ìí¼Ó̽²âÆ÷£¬»á³öÏÖÒ»¸öÈçͼ7-4ËùʾµÄµ¯³ö´°¿Ú£¬ÔÚÕâÀïÄã¿ÉÒÔÌî³ä¹ØÓÚ̽²âÆ÷µÄÐÅÏ¢¡£\r\n\r\nÄãÐèÒªÊäÈëÏÂÃæµÄÐÅÏ¢\r\n̽²âÆ÷µÄÃû³Æ£¬Äã¿ÉÒÔÌîдÄãËùÐèÒªµÄÃû×ÖÒÔ·½±ã¹ÜÀí\r\n̽²âÆ÷µÄIPµØÖ·\r\nIDS SystemÎı¾¿òÓÃÀ´Ö¸¶¨SnortµÄ°æ±¾£¬ÒòΪSnort²»Í¬µÄ°æ±¾µÄ²ÎÊýºÍ²å¼þÒÔ¼°¹Ø¼ü×ÖÓÐÒ»µã²»Í¬£¬Òò´ËÕâ¸öÐÅÏ¢µÄÕýÈ·ÐÔÒ²ÊDZȽÏÖØÒªµÄ¡£\r\n¡°Upload Information¡±°üÀ¨Ò»Ð©ºÍ̽²âÆ÷Ö®¼ä´«ÊäÎļþµÄ²ÎÊý¡£\r\nSCP·½Ê½ÊǵǼ̽²âÆ÷ÉϵÄSSH·þÎñÆ÷¡£¡°Upload Directory¡±Ö¸¶¨Snort̽²âÆ÷ÉϵÄsnort.confµÄλÖá£\r\n\r\nÔÚÊäÈëÕâЩÐÅÏ¢ÒÔºóµã»÷OK¾ÍÌí¼ÓÁËÒ»¸ö̽²âÆ÷¡£ºóÃæµÄµÚÒ»ÏîÈÎÎñ¾ÍÊÇ´ÓÄã¸Õ²ÅÌí¼ÓµÄ̽²âÆ÷ÉÏÃæÏÂÔزßÂÔ¡£ÔÚSensor²Ëµ¥ÖÐÑ¡ÔñDownload Policy from SensorÀ´ÊµÏÖÕâ¸öÄ¿µÄ¡£ÏÂÔØÍê³Éºó£¬µã»÷´°¿ÚÏ·½µÄPolicy Manager±êÇ©£¬Äã¿ÉÒÔ¿´µ½µ±Ç°µÄ²ßÂÔµÄÁÐ±í²¢ÔÚÕâÀï±à¼­²ßÂÔ£¬Ë«»÷²ßÂÔÃû×Ö£¬¾Í³öÏÖÒ»¸ö²ßÂԱ༭´°¿Ú£¬Èçͼ7-5Ëùʾ¡£

ÂÛ̳»ÕÕÂ:
1
³óÅ£
ÈÕÆÚ:2015-01-07 15:25:00
94Â¥ [±¨¸æ]
·¢±íÓÚ 2006-10-27 23:44 |Ö»¿´¸Ã×÷Õß
7.3¼ÓÇ¿ACID web¿ØÖÆ̨µÄ°²È«ÐÔ\r\nµÚ6ÕÂÖУ¬ÎÒÃÇÌáµ½ACID»¹ÓÐһЩ°²È«ÎÊÌ⣬Èç¹û²»²ÉÈ¡ÏàÓ¦µÄ´ëÊ©£¬ÄÇô¿ÉÄÜÈκÎÈ˶¼ÄÜÐÞ¸ÄACIDËù·ÃÎʵÄÊý¾Ý¿â¡£\r\nÔÚACIDµÄÅäÖÃÎļþacid_conf.phpÖУ¬Óû§ÃûºÍ¿ÚÁÒѾ­¾­¹ý¸ßÇ¿¶È¼ÓÃÜ£¬ËùÒÔÈκηÃÎÊACIDÍøÒ³µÄÈ˶¼ÎÞ´ÓÖªµÀÊý¾Ý¿âµÄÓû§ÃûºÍ¿ÚÁî¡£\r\nÎÒÃÇÓÐһЩ·½·¨ÄÜʹACIDµÃµ½°²È«µÄÓ¦Óá£\r\n7.3.1 ²ÉÓÃרÓÃÍøÂç\r\n·ÀÖ¹ACID±»ÈÎÒâ·ÃÎʵÄÆäÖÐÒ»¸ö·½·¨¾ÍÊǽ«IDSϵͳÒÔ¼°Êý¾Ý¿â·ÅÔÚÒ»¸öרÓÃÍøÂçÖУ¬²¢·ÖÅä˽ÍøIPµØÖ·£¬ÕâÑùËüÃǶÔInternetÊDz»¿É·ÃÎʵġ£ µ«ÊÇÕâÖÖ·½°¸ÈÔÈ»ÓÐЩÎÊÌ⣬¾ÍÊÇÄÚ²¿ÍøÂçÓû§¿ÉÒÔÈÎÒâµÄ·ÃÎÊACID²¢ÐÞ¸ÄÐÅÏ¢¡£\r\n7.3.2 ÔÚ·À»ðǽÉÏ×èÖ¹Íⲿ¶ÔWeb·þÎñÆ÷µÄ·ÃÎÊ\r\nÁíÍâÒ»¸ö·½·¨¾ÍÊÇ×èÖ¹InternetÓû§¶ÔACIDµÄweb·þÎñÆ÷µÄ·ÃÎÊ£¬Í¬Éϸö·½°¸Ò»Ñù£¬Õâ¸ö·½°¸Ê¹ÏµÍ³ÈÝÒ×Êܵ½ÄÚ²¿µÄ¹¥»÷¡£\r\n7.3.3 iptables\r\nÁíÍâÒ»¸ö·½·¨¾ÍÊÇÓÃiptablesʹweb·þÎñÆ÷Ö»¹©¹ÜÀíÈËÔ±·ÃÎÊ¡£ÕâÊÇ×ȫµÄ·½°¸Ö®Ò»£¬²»½ö¿ÉÒÔ×èÖ¹ÍâÀ´¹¥»÷£¬Ò²¿ÉÒÔ·ÀÖ¹ÄÚ²¿µÄ¹¥»÷¡£\r\nÀýÈ磬Èç¹ûÍøÂç¹ÜÀíÔ±µÄ»úÆ÷µÄIPµØÖ·ÊÇ192.168.1.100£¬ÎÒÃÇ¿ÉÒÔÔö¼ÓÕâÑùÒ»ÌõIptables¹æÔò£º\r\niptables -A INPUT -s ! 192.168.1.100 -j DROP\r\nÕâÑù¾Í»á×èÖ¹ËùÓв»ÊÇÀ´×Ô192.168.1.100µÄÁ¬½Ó¡£
ÄúÐèÒªµÇ¼ºó²Å¿ÉÒÔ»ØÌû µÇ¼ | ×¢²á

±¾°æ»ý·Ö¹æÔò ·¢±í»Ø¸´

  

±±¾©Ê¢ÍØÓÅѶÐÅÏ¢¼¼ÊõÓÐÏÞ¹«Ë¾. °æȨËùÓÐ ¾©ICP±¸16024965ºÅ-6 ±±¾©Êй«°²¾Öº£µí·Ö¾ÖÍø¼àÖÐÐı¸°¸±àºÅ£º11010802020122 niuxiaotong@pcpop.com 17352615567
δ³ÉÄê¾Ù±¨×¨Çø
Öйú»¥ÁªÍøЭ»á»áÔ±  ÁªÏµÎÒÃÇ£ºhuangweiwei@itpub.net
¸ÐлËùÓйØÐĺÍÖ§³Ö¹ýChinaUnixµÄÅóÓÑÃÇ ×ªÔر¾Õ¾ÄÚÈÝÇë×¢Ã÷Ô­×÷ÕßÃû¼°³ö´¦

Çå³ý Cookies - ChinaUnix - Archiver - WAP - TOP