System for automatically analyzing computer network connectivity
Patent Information
- Authority / Receiving Office
- CN Β· China
- Patent Type
- Applications(China)
- Current Assignee / Owner
- SHANGHAI JIAO TONG UNIV
- Publication Date
- 2012-04-11
Smart Images
Figure 1 Figure 2 Figure 3
Abstract
Description
technical field
[0001] The invention belongs to the technical field of computer network security, and more specifically relates to an automatic analysis system for computer network connectivity, which can obtain the connectivity between hosts in the entire network system by analyzing firewall configuration files in the network system. Background technique
[0002] The connectivity between hosts in the network is the basis for vulnerability and penetration analysis of the entire network. For example, if one host exploits a target host's vulnerability, the prerequisite for successfully invading the host is that the two hosts are connected, that is, the successful exploit The vulnerability requires normal communication between two host-specific ports. Therefore, obtaining the connectivity of any two hosts in the entire network is of great significance for network security management and penetration testing.
[0003] From domestic and foreign database retrieval and literature a...