彭兆军. 网络防火墙内部数据过滤保护算法[J]. 微电子学与计算机, 2017, 34(11): 131-134,139.
引用本文: 彭兆军. 网络防火墙内部数据过滤保护算法[J]. 微电子学与计算机, 2017, 34(11): 131-134,139.
PENG Zhao-jun. Network Firewall Internal Data Filtering Protection Algorithm[J]. Microelectronics & Computer, 2017, 34(11): 131-134,139.
Citation: PENG Zhao-jun. Network Firewall Internal Data Filtering Protection Algorithm[J]. Microelectronics & Computer, 2017, 34(11): 131-134,139.

网络防火墙内部数据过滤保护算法

Network Firewall Internal Data Filtering Protection Algorithm

  • 摘要: 网络防火墙是计算机与网络之间的连接通道, 在过滤网络病毒, 保护计算机用户安全方面存在重要作用.网络防火墙内部数据过滤保护算法的性能直接影响其过滤病毒的能力, 但目前大多数网络防火墙数据都是根据预先设定的安全策略, 对进出网络内部的数据包进行检查过滤, 在判断数据包是否安全时存在误判可能.为此提出一种基于群体信任的网络防火墙内部数据过滤保护算法, 首先把网络防火墙内部数据库模型化为一棵层次树, 网络防火墙内部危险数据获取问题就转化为树的遍历问题.通过对树中的属性排序, 缩小查询空间.根据计算树中属性值相关度提高网络防火墙内部危险数据提取的准确度和提取效率.然后通过计算数据特征, 确定流经网络防火墙的数据信任度, 完成对目标数据的信任评价, 进而实现网络防火墙内部数据过滤保护.通过仿真实验证明, 所提方法能够有效提高网络防火墙过滤保护的准确性, 提高网络防火墙内部数据过滤保护效率, 具有较强的实用性.

     

    Abstract: Network firewall is the connection between the computer and the network channel, in the filter network virus, to protect the security of computer users there is an important role. The performance of the internal data filtering protection algorithm of the network firewall directly affects the ability of filtering the virus. However, most of the network firewall data are based on the pre-set security policy. The data packets inside and outside the network are checked and checked. There is a possibility of misjudgment.In this paper, an internal data filtering and protection algorithm based on community trust is proposed. Firstly, the internal database of network firewall is modeled as a hierarchical tree, and the problem of dangerous data acquisition in network firewall is transformed into tree traversal problem. By comparing the attribute of the tree, the query space is reduced. The accuracy and efficiency of the extraction of the dangerous data within the network firewall are improved by calculating the correlation of the attribute values. Then, the data trust of the network firewall is determined by calculating the data characteristics. The trust of the target data evaluation, and then to achieve the network firewall internal data filtering protection. The simulation results show that the proposed method can improve the accuracy of network firewall filtering protection effectively, improve the efficiency of filtering and protecting the data within the network firewall, and has strong practicability.

     

/

返回文章
返回