论文部分内容阅读
提出了一种综合性的使用主机软件对网站服务器进行防护的政府网站综合防护系统(以下简称“网防G01”)。该系统是从操作系统内核加固、Web中间件防护、网站内容保护、网络流量防护、安全态势感知等角度,在主机环境下采用纵深防御的思想建立的网站安全防护综合解决方案,利用对未知Webshel的检测、应用层运用微隔离、针对攻击事件的回溯等核心技术,具有较大的应用价值。
Proposed a comprehensive use of host software to protect the Web site server integrated government protection system (hereinafter referred to as “network defense G01 ”). The system is a comprehensive website security protection solution based on the thought of deep defense in the host environment from the aspects of operating system kernel hardening, web middleware protection, website content protection, network traffic protection and security situational awareness. By using Webshel Detection, the application layer using micro-isolation, for the back-tracking of attacks and other core technologies, has great application value.