论文部分内容阅读
防火墙是网络安全研究的一个重要内容,数据包捕获是包过滤型防火墙的前提。本文对基于Linux主机的个人防火墙的数据包捕获模块进行了研究,重点论述数据包捕获模块的结构、组成以及功能。首先对信息安全及防火墙的重要性进行论述,并给出防火墙的详细分类;然后分析了基于Linux主机的个人防火墙总体设计及软硬件平台原理,接着论述Linux下的数据包捕获模块结构与原理,并详述其具体实现步骤。
Firewall is an important part of network security research. Packet capture is the precondition of packet-filtering firewall. This paper studies the packet capture module based on the personal firewall of Linux host, focusing on the structure, composition and function of the packet capture module. First of all, the importance of information security and firewall are discussed, and a detailed classification of firewall is given. Then, the general design of personal firewall based on Linux host and the principle of hardware and software platform are analyzed. Then the structure and principle of packet capture module under Linux are discussed, And detailed description of its specific implementation steps.