A network active defense technology based on multi-layers deception in the distributed deception space is proposed to meet the needs of network countermeasure and network security. This technology simulates usual network service programs and forges vulnerabilities to lure the intruder. With operation control at kernel level, file system mirror and information deception, it creates the deceiving operating environment on the platform of Windows and Linux. Thus the process of intrusion is fully deceived, monitored and controlled. This technology breaks the limitation of a single layer deception used by other general honeypots, and obviously promotes the level of deception, interaction and ensures security.
参考文献
相似文献
引证文献
引用本文
姚兰,王新梅.基于欺骗的网络主动防御技术研究[J].国防科技大学学报,2008,30(3):65-69. YAO Lan, WANG Xinmei. A Study on the Network Active Defense TechnologyBased on Deception[J]. Journal of National University of Defense Technology,2008,30(3):65-69.