论文部分内容阅读
网络攻击越来越复杂,以至于经常表现为联合攻击,如对网络本身的攻击,对应用的攻击、混合式攻击等。传统的安全手段往往难以应付今天的攻击。用户需要在不同的地点、不同的网络层面都能得到安全防护。但是,在使用多种来自不同厂家,位于不同层面的安全设备时,可能会在协同工作上出现问题。在这种情况下,以复合式安全产品来应对复合式攻击是很自然的,这也是安全产品的一个发展方向。目前拥有千兆防火墙的Cisco,安氏、东软、天融信、联想、方正、清华得实等都有多功能型的防火墙,但是还都不能称为“复合式”产品。要符合复合式产品的特点,应该是立体防护的,不仅在流量上可以控制,还应该可以将流量有策略的管理起来。NetScreen 把这种管理叫做“虚拟化技术”。NetScteen 公司在其5000系列产品中还加入了虚拟化技术,这一技术可以
Network attacks are more and more complex, so often manifested as joint attacks, such as attacks on the network itself, the application of attacks, hybrid attacks. Traditional security methods are often difficult to cope with today’s attacks. Users need to be in different locations, different network levels can be security. However, when using multiple security appliances located at different levels and from different vendors, problems may arise with collaboration. Under such circumstances, it is natural to deal with composite attacks with composite security products, which is also a development direction of security products. Currently has a Gigabit firewall Cisco, Angle, Neusoft, Tencent, Lenovo, Founder, Tsinghua University, and so have solid multi-purpose firewall, but also can not be called “composite” products. To meet the characteristics of composite products, should be three-dimensional protection, not only in the flow of control, but also should be able to flow management strategy together. NetScreen calls this management “virtualization technology.” NetScteen Inc has also added virtualization technology to its 5000 series, a technology that works