基于日志分析的校园网监测预警平台设计与实现

陈荣征

电脑与电信 ›› 2016, Vol. 1 ›› Issue (3) : 49-51.

电脑与电信 ›› 2016, Vol. 1 ›› Issue (3) : 49-51.
基金项目

基于日志分析的校园网监测预警平台设计与实现

  • 陈荣征
作者信息 +

Design and Implementation of Monitoring and EarlyWarning Platform for Campus Network Based on Log Analysis

  • Chen Rongzheng
Author information +
文章历史 +

摘要

设计并实现了一种基于日志分析的校园网监测预警平台。利用开源软件rsyslog,收集校园网络设备或*nix 系 统的日志信息,并实时存储到Mysql 数据库,基于Apriori 算法对日志信息进行分析处理,以动态监测潜在的攻击行为,一旦监 测到危险行为,平台能够自动部署访问控制列表(ACL),并及时向管理员发出预警通知,以便提前处理。平台为校园网络安全 管理提供了一种有价值的参考。

Abstract

A monitoring and early warning platform for campus network based on log analysis is designed and implemented. The open source software of rsyslog is used to collect log information of campus network device or * nix system, and store in mysql database in real time. Log information is analyzed and processed based on Apriori algorithm to monitor potential attacks dynamically. Once dangerous behavior is found, the platform can automatically deploy access control list (ACL), and promptly issue a warning notice to administrators to deal with in advance. Platform provides a valuable reference for security management of the campus network.

关键词

日志分析 / rsyslog / 校园网 / 监测预警 / LAMP

Key words

log analysis / rsyslog / monitoring and early warning / LAMP

引用本文

导出引用
陈荣征. 基于日志分析的校园网监测预警平台设计与实现[J]. 电脑与电信. 2016, 1(3): 49-51
Chen Rongzheng. Design and Implementation of Monitoring and EarlyWarning Platform for Campus Network Based on Log Analysis[J]. Computer & Telecommunication. 2016, 1(3): 49-51
中图分类号: TP393.08   

基金

2015 年广东职业技术学院科研项目,项目编号:K2015108。

Accesses

Citation

Detail

段落导航
相关文章

/