The invention discloses a test
system and a test method oriented to a next-generation firewall. The test
system is composed of five modules, namely a management module, a strategy module, a session generation module, a result evaluation module and a report module. The test method comprises the steps: (a)
test strategy configuration: according to preset parameters,
filling in data structure linked lists of test rules to generate
specific test cases; (b) network session generation: constructing an independent
client program and an independent
server program, respectively simulating an
attack host and a host in the network protected by a firewall, then respectively calling plugins corresponding to the test cases, passing the parameters of the test cases generated in the step a to the plugins, generating data packets in real time through the plugins, and delivering the data packets to a
client or a
server to be sent to generate a network session or
network attack session; (c) test result evaluation: evaluating test results according to the
completion status of the session, as well as behavior parameters and alarm information of the firewall. By adopting the test
system and the test method oriented to the next-generation firewall, automatic test and evaluation of the next-generation firewall can be realized.