Network surrounding environment checking system for network security

By providing a network peripheral environment inspection system containing multiple modules, it solves the problem that it is difficult to efficiently process network peripheral environment data in the prior art, and realizes efficient and accurate security monitoring and threat assessment, which improves the overall security of the network system.

CN119945776APending Publication Date: 2025-05-06BEIJING HONGSHAN INFORMATION TECH RES CO LTD
View PDF 0 Cites 0 Cited by

Patent Information

Application Number
CN202510098399.X
Authority / Receiving Office
CN · China
Patent Type
Applications(China)
Current Assignee / Owner
Filing Date
2025-01-22
Publication Date
2025-05-06

AI Technical Summary

Technical Problem

The existing technology is difficult to efficiently and accurately process the huge and complex data generated by the network surrounding environment, resulting in the inability to detect potential security threats in time, the early warning response process is cumbersome and the response speed is slow. The investigation of the network surrounding environment relies on manual operations, which increases the workload and cost, and is prone to the negligence of security vulnerabilities being ignored.

Method used

It provides a network peripheral environment inspection system, including network environment inspection module, log management retention module, security policy customization management module, risk assessment identification module, security protection deployment module, network security detection and monitoring module and network security response recovery module. Through automated tools and manual analysis, these modules efficiently process data, monitor network activities in real time, promptly discover and identify potential security threats, and take corresponding measures to restore the normal operation of the system.

Benefits of technology

It significantly improves the efficiency and accuracy of security monitoring, comprehensively sorts out information assets inside and outside the organization, evaluates potential network security threats, effectively prevents data leakage and illegal utilization through a multi-level security protection system, improves the overall security of the network system and reduces the impact of security incidents on the business.

✦ Generated by Eureka AI based on patent content.

Smart Images

  • Figure CN119945776A_ABST
    Figure CN119945776A_ABST
Patent Text Reader

Abstract

The invention discloses a network surrounding environment checking system for network security, which relates to the technical field of network security, and adopts the technical scheme that the network surrounding environment checking system comprises a network environment checking module, a log management and reservation module is arranged at the connecting end of the network environment checking module, and the network environment checking module is in data connection with the log management and reservation module; the network environment troubleshooting module comprises a security policy customization management module, a risk assessment identification module, a security protection deployment module, a network security detection monitoring module and a network security response recovery module; the network environment troubleshooting module is in data connection with the security policy customization management module, the risk assessment identification module, the security protection deployment module, the network security detection monitoring module and the network security response recovery module. And the efficiency and the accuracy of safety monitoring are obviously improved.
Need to check novelty before this filing date? Find Prior Art

Description

Technical Field

[0001] The present invention relates to the technical field of network security, and in particular to a network peripheral environment investigation system for network security. Background Art

[0002] With the rapid development of information technology, the network environment is becoming increasingly complex, and network attack methods are emerging in an endless stream. Network security has become an important cornerstone for maintaining national security, social stability and public interests. As the first line of defense for network security, the security of the network surrounding environment is directly related to the stable operation of the entire network system and the secure transmission of data.

[0003] The amount of data generated by the existing network surrounding environment is huge and complex. Traditional security monitoring methods are difficult to process this data efficiently and accurately, resulting in potential security threats not being discovered in a timely manner. The early warning response process is cumbersome and the response speed is slow, and security incidents are often unable to be prevented in time. The inspection of the network surrounding environment still relies on manual operations, which not only increases the workload and cost, but also easily leads to security vulnerabilities being overlooked due to human negligence. Summary of the invention

[0004] To this end, the present invention provides a network perimeter environment inspection system for network security to solve the problem that the amount of data generated by the network perimeter environment is huge and complex, and traditional security monitoring means are difficult to process these data efficiently and accurately, resulting in potential security threats cannot be discovered in time, the early warning response process is cumbersome and the response speed is slow, and the occurrence of security incidents cannot be prevented in time. The inspection of the network perimeter environment still relies on manual operation, which not only increases the workload and cost, but also easily leads to the problem of security vulnerabilities being ignored due to human negligence.

[0005] In order to achieve the above-mentioned purpose, the present invention provides the following technical solutions: a network peripheral environment investigation system for network security, comprising a network environment investigation module, a log management and retention module is provided at the connection end of the network environment investigation module, the network environment investigation module is data-connected with the log management and retention module, the network environment investigation module comprises a security policy customization management module, a risk assessment and identification module, a security protection deployment module, a network security detection and monitoring module and a network security response and recovery module, the network environment investigation module is data-connected with the security policy customization management module, the risk assessment and identification module, the security protection deployment module, the network security detection and monitoring module and the network security response and recovery module respectively.

[0006] Preferably, the security policy customization management module includes an access control module, an identity authentication module, a rights management module and an access audit module, and the security policy customization management module is data-connected with the access control module, the identity authentication module, the rights management module and the access audit module respectively.

[0007] Preferably, the risk assessment and identification module includes an asset identification module, a threat analysis module, a weakness assessment module and a risk rating module, and the risk assessment and identification module is data-connected to the asset identification module, the threat analysis module, the weakness assessment module and the risk rating module respectively.

[0008] Preferably, the security protection deployment module includes a data encryption protection module, a data transmission storage encryption module and a key module, and the security protection deployment module is data-connected to the data encryption protection module, the data transmission storage encryption module and the key module respectively.

[0009] Preferably, the network security detection and monitoring module includes an intrusion detection module, a log analysis module and a flow analysis module, and the network security detection and monitoring module is data-connected with the intrusion detection module, the log analysis module and the flow analysis module respectively.

[0010] Preferably, the network security response recovery module includes a plan formulation module, an emergency response module, a data recovery module and a system audit module, and the network security response recovery module is data-connected to the plan formulation module, the emergency response module, the data recovery module and the system audit module respectively.

[0011] Preferably, the network security detection and monitoring module includes a cabinet, a plurality of bearing shells are fixedly provided inside the cabinet, a plurality of through holes are opened on one side of the bearing shell, a water tank is fixedly provided at the bottom of the cabinet, a pump is fixedly provided on one side of the water tank, the pump input end extends into the water tank, the pump output end is fixedly connected with a delivery pipe, the delivery pipe extends out of the cabinet, one end of the delivery pipe is fixedly connected with a first connecting pipe, a water pipe is fixedly provided inside the bearing shell, one end of the water pipe is fixedly connected to the first connecting pipe, the other side of the water pipe is fixedly connected with a second connecting pipe, one side of the second connecting pipe is fixedly connected with a heat dissipation pipe, one end of the heat dissipation pipe extends into the water tank, a second mounting shell is fixedly provided inside the cabinet, and two second fans are installed on one side of the second mounting shell.

[0012] Preferably, a plurality of supporting legs are fixedly provided at the bottom of the cabinet, a cabinet door is provided at one side of the cabinet, and the cabinet and the cabinet door are connected by a hinge.

[0013] Preferably, a plurality of second filters are embedded on both sides of the cabinet.

[0014] Preferably, a side shell is fixedly provided on one side of the cabinet, a first mounting shell is fixedly provided on one side of the side shell, two first filters are embedded on one side of the first mounting shell, two first fans are installed on one side of the first mounting shell, a connecting shell is fixedly provided on the top of the side shell, a motor is fixedly provided on one side of the connecting shell, a threaded rod is fixedly connected to the output end of the motor, a slider is provided on the outside of the threaded rod through a threaded sleeve, and a brush is fixedly provided on one side of the slider.

[0015] The embodiments of the present invention have the following advantages:

[0016] 1. It can efficiently and automatically process the huge and complex data generated by the network environment, significantly improving the efficiency and accuracy of security monitoring, comprehensively sorting out information assets inside and outside the organization, evaluating potential network security threats, and combining automated tools and manual analysis to accurately rate risks, providing a strong basis for the deployment of security protection measures. Through data encryption protection, data transmission and storage encryption, and key management, it has built a multi-level security protection system to effectively prevent data leakage and illegal use, improve the overall security of the network system, monitor network activities in real time, promptly discover and identify potential security threats, respond quickly after detecting security incidents, take corresponding measures to restore the normal operation of the system, and reduce the impact of security incidents on the business. Through intelligent log management, it can promptly discover abnormal and illegal operations, providing strong support for the investigation and handling of security incidents;

[0017] 2. The coolant circulation system and fan heat dissipation inside the cabinet, as well as regular cleaning of dust on the filter surface, ensure the stability and reliability of the equipment during long-term operation. BRIEF DESCRIPTION OF THE DRAWINGS

[0018] In order to more clearly illustrate the implementation methods of the present invention or the technical solutions in the prior art, the following briefly introduces the drawings required for the implementation methods or the description of the prior art. Obviously, the drawings in the following description are only exemplary, and for ordinary technicians in this field, other implementation drawings can be derived from the provided drawings without creative work.

[0019] The structures, proportions, sizes, etc. illustrated in this specification are only used to match the contents disclosed in the specification so as to facilitate understanding and reading by persons familiar with the technology. They are not used to limit the conditions under which the present invention can be implemented, and therefore have no substantial technical significance. Any structural modification, change in proportion or adjustment of size shall still fall within the scope of the technical contents disclosed in the present invention without affecting the effects and purposes that can be achieved by the present invention.

[0020] Figure 1 A schematic diagram of the network environment troubleshooting module system provided by the present invention;

[0021] Figure 2 A schematic diagram of the structure of the risk assessment and identification module system provided by the present invention;

[0022] Figure 3 A schematic diagram of the security policy customization management module system structure provided by the present invention;

[0023] Figure 4 A schematic diagram of the security protection deployment module system structure provided by the present invention;

[0024] Figure 5 A schematic diagram of the network security detection and monitoring module system structure provided by the present invention;

[0025] Figure 6 A schematic diagram of the network security response and recovery module system structure provided by the present invention;

[0026] Figure 7 A three-dimensional diagram of the cabinet provided by the present invention;

[0027] Figure 8 A schematic diagram of the internal structure of the cabinet provided by the present invention;

[0028] Fig. 9 The cabinet cross-section provided by the present invention Figure 1 ;

[0029] Fig.10 The cabinet cross-section provided by the present invention Figure 2 ;

[0030] Fig.11 A three-dimensional view of the side housing provided by the present invention;

[0031] Fig.12 This is a top sectional view of the cabinet provided by the present invention.

[0032] In the figure: 1. Network environment investigation module; 2. Security policy customization management module; 3. Risk assessment and identification module; 4. Security protection deployment module; 5. Network security detection and monitoring module; 6. Network security response and recovery module; 7. Log management and retention module; 8. Asset identification module; 9. Threat analysis module; 10. Vulnerability assessment module; 11. Risk rating module; 12. Access control module; 13. Identity authentication module; 14. Permission management module; 15. Access audit module; 16. Intrusion detection module; 17. Log analysis module; 18. Traffic analysis module; 19. Data encryption protection module; 20. Data transmission and storage encryption module; 21. Key module; 22. Plan making module; 23. Emergency response module; 24. Data recovery module; 25. System audit module; 26. Cabinet; 27. Cabinet door; 28. Support leg; 29. ​​Connecting shell; 30. Threaded rod; 31. Motor; 32. Slider; 33. Brush; 34. First mounting shell; 35. First filter; 36. Side shell; 37. Second filter; 38. Load-bearing shell; 39. Through hole; 40. Water tank; 41. Pump; 42. Delivery pipe; 43. First fan; 44. Second mounting shell; 45. Second fan; 46. Water pipe; 47. First connecting pipe; 48. Second connecting pipe; 49. Heat dissipation pipe. DETAILED DESCRIPTION

[0033] The following is a description of the implementation of the present invention by specific embodiments. People familiar with the art can easily understand other advantages and effects of the present invention from the contents disclosed in this specification. Obviously, the described embodiments are part of the embodiments of the present invention, not all of the embodiments. Based on the embodiments of the present invention, all other embodiments obtained by ordinary technicians in this field without creative work are within the scope of protection of the present invention.

[0034] See attached Figure 1 -Attached Fig.12 The present invention provides a network peripheral environment investigation system for network security, comprising a network environment investigation module 1, a log management and retention module 7 is provided at a connection end of the network environment investigation module 1, the network environment investigation module 1 is data-connected with the log management and retention module 7, the network environment investigation module 1 comprises a security policy customization management module 2, a risk assessment and identification module 3, a security protection deployment module 4, a network security detection and monitoring module 5 and a network security response and recovery module 6, the network environment investigation module 1 is data-connected with the security policy customization management module 2, the risk assessment and identification module 3, the security protection deployment module 4, the network security detection and monitoring module 5 and the network security response and recovery module 6 respectively;

[0035] In this implementation scheme, the security policy customization management module 2 defines the overall security policy, monitoring cycle, recovery mechanism, and network access control policy of the system, introduces a policy compliance check mechanism to ensure that all components follow the established policy, the risk assessment and identification module 3 assesses the potential risks of the network surrounding environment, including determining business priorities, risk identification, impact assessment, and resource priority division, using risk assessment tools to perform automated risk assessments, combined with manual analysis, to identify potential threats in specific business scenarios, the security protection deployment module 4 deploys corresponding protection mechanisms based on the risk assessment results, the network security detection and monitoring module 5 monitors network activities in real time, detects and identifies potential security threats, the network security response and recovery module 6 responds quickly and restores the normal operation of the system after detecting a security incident, and the log management retention module 7 centrally collects, stores, and analyzes various types of log data, providing an important basis for security analysis, and reasonably retains log data for audit and investigation needs;

[0036] Among them, in order to achieve the purpose of security policy customization, the present device adopts the following technical solutions: the security policy customization management module 2 includes an access control module 12, an identity authentication module 13, a permission management module 14 and an access audit module 15, and the security policy customization management module 2 is respectively connected with the access control module 12, the identity authentication module 13, the permission management module 14 and the access audit module 15 data, the access control module 12 controls the access, the identity authentication module 13 implements a multi-factor authentication mechanism to ensure the authenticity and uniqueness of the user identity, the permission management module 14 reasonably allocates user and system permissions based on the principle of least privilege, and conducts regular reviews, and the access audit module 15 records and analyzes all access behaviors so as to promptly discover abnormalities and illegal operations;

[0037] Among them, in order to achieve the purpose of risk assessment, the present device is implemented by the following technical solutions: the risk assessment identification module 3 includes an asset identification module 8, a threat analysis module 9, a weakness assessment module 10 and a risk rating module 11, and the risk assessment identification module 3 is respectively connected with the asset identification module 8, the threat analysis module 9, the weakness assessment module 10 and the risk rating module 11. The asset identification module 8 comprehensively sorts out the information assets inside and outside the organization, including hardware, software, data and services. The threat analysis module 9 evaluates potential network security threats, including external attacks, internal leaks, natural disasters and other threats. The weakness assessment module 10 identifies security weaknesses in the system through technical tools and manual inspections. The risk rating module 11 comprehensively rates risks based on threats, weaknesses and asset values ​​and determines priorities.

[0038] Among them, in order to achieve the purpose of security protection deployment, the present device is implemented by the following technical solutions: the security protection deployment module 4 includes a data encryption protection module 19, a data transmission storage encryption module 20 and a key module 21, and the security protection deployment module 4 is respectively connected with the data encryption protection module 19, the data transmission storage encryption module 20 and the key module 21. The data encryption protection module 19 ensures the security of the data transmission process, the data transmission storage encryption module 20 encrypts and stores sensitive data to prevent illegal use after data leakage, and the key module 21 establishes a complete key generation, storage, distribution and destruction mechanism to ensure key security;

[0039] Among them, in order to achieve the purpose of network security detection and monitoring, the present device adopts the following technical solutions: the network security detection and monitoring module 5 includes an intrusion detection module 16, a log analysis module 17 and a flow analysis module 18, and the network security detection and monitoring module 5 is respectively connected with the intrusion detection module 16, the log analysis module 17 and the flow analysis module 18. The intrusion detection module 16 deploys IDS / IPS to monitor network activities in real time and prevent potential attacks. The log analysis module 17 collects and analyzes the logs of network devices, application systems and security tools to identify potential security threats. The flow analysis module 18 analyzes network flow patterns and identifies abnormal behaviors through flow monitoring tools;

[0040] Among them, in order to achieve the purpose of network security response, the present device is implemented by the following technical solutions: the network security response recovery module 6 includes a plan formulation module 22, an emergency response module 23, a data recovery module 24 and a system audit module 25, and the network security response recovery module 6 is respectively connected with the plan formulation module 22, the emergency response module 23, the data recovery module 24 and the system audit module 25. The plan formulation module 22 formulates detailed emergency response plans for different types of network security events, the emergency response module 23 makes emergency responses to the events, the data recovery module 24 clarifies the procedures and steps for data recovery, system reconstruction and business recovery, and the system audit module 25 regularly conducts a comprehensive audit of the system to evaluate its security and compliance;

[0041] Among them, in order to achieve the purpose of heat dissipation, the present device is implemented by the following technical solutions: the network security detection monitoring module 5 includes a cabinet 26, a plurality of bearing shells 38 are fixedly provided inside the cabinet 26, a plurality of through holes 39 are opened on one side of the bearing shell 38, a water tank 40 is fixedly provided at the bottom of the cabinet 26, a pump 41 is fixedly provided on one side of the water tank 40, the input end of the pump 41 extends into the water tank 40, the output end of the pump 41 is fixedly connected to a delivery pipe 42, the delivery pipe 42 extends out of the cabinet 26, one end of the delivery pipe 42 is fixedly connected to a first connecting pipe 47, a water pipe 46 is fixedly provided inside the bearing shell 38, one end of the water pipe 46 is fixedly connected to the first connecting pipe 47, the other side of the water pipe 46 is fixedly connected to a second connecting pipe 48, and the second connecting pipe A heat dissipation pipe 49 is fixedly connected to one side of 48, and one end of the heat dissipation pipe 49 extends into the water tank 40. A second installation shell 44 is fixedly provided inside the cabinet 26, and two second fans 45 are installed on one side of the second installation shell 44. The switch, firewall, wireless controller, router and other equipment are installed on the bearing shell 38 in the cabinet 26. When all the equipment are put into operation, the equipment itself will generate heat. At this time, the coolant in the water tank 40 is transported to the first connecting pipe 47 through the delivery pipe 42 by the pump 41, and is input into the water pipe 46 through the first connecting pipe 47. The water pipe 46 absorbs the heat emitted by the equipment installed on the bearing shell 38 in the cabinet 26 and transports it to the second connecting pipe 48 and the heat dissipation pipe 49. The second fan 45 is started, and the second fan 45 blows away the heat absorbed by the coolant in the heat dissipation pipe 49.

[0042] In order to achieve the purpose of closing the cabinet 26, the device adopts the following technical solution: a plurality of supporting legs 28 are fixedly provided at the bottom of the cabinet 26, a cabinet door 27 is provided on one side of the cabinet 26, the cabinet 26 and the cabinet door 27 are connected by hinges, the cabinet 26 is closed by the cabinet door 27, and the supporting legs 28 support the cabinet 26;

[0043] Among them, in order to achieve the purpose of heat dissipation and dust removal, the present device is implemented by the following technical solutions: a plurality of second filters 37 are embedded on both sides of the cabinet 26, a side shell 36 is fixedly provided on one side of the cabinet 26, a first mounting shell 34 is fixedly provided on one side of the side shell 36, two first filters 35 are embedded on one side of the first mounting shell 34, two first fans 43 are installed on one side of the first mounting shell 34, a connecting shell 29 is fixedly provided on the top of the side shell 36, a motor 31 is fixedly provided on one side of the connecting shell 29, a threaded rod 30 is fixedly connected to the output end of the motor 31, a slider 32 is provided on the outside of the threaded rod 30 through a threaded sleeve, a brush 33 is fixedly provided on one side of the slider 32, the first fan 43 is started and dissipates heat for the equipment in the cabinet 26, and the heat is blown away to the outside of the cabinet 26 through the second filter 37, the motor 31 is started regularly, the motor 31 controls the threaded rod 30 to rotate, the threaded rod 30 drives the slider 32 to move, the slider 32 drives the brush 33 to move, the brush 33 scrapes away the dust on the surface of the first filter 35, and it is convenient to continue to dissipate heat.

[0044] The use process of the present invention is as follows:

[0045] The security policy customization management module 2 defines the system's overall security policy, monitoring cycle, recovery mechanism, and network access control policy, and introduces a policy compliance check mechanism to ensure that all components follow the established policy. The risk assessment and identification module 3 assesses the potential risks of the network's surrounding environment, including determining business priorities, risk identification, impact assessment, and resource priority division. It uses risk assessment tools to perform automated risk assessments and combines manual analysis to identify potential threats in specific business scenarios. The security protection deployment module 4 deploys corresponding protection mechanisms based on the risk assessment results. The network security detection and monitoring module 5 monitors network activities in real time, detects and identifies potential security threats, and ensures that network security is protected. The full response recovery module 6 responds quickly and restores the normal operation of the system after detecting a security incident. The log management and retention module 7 centrally collects, stores and analyzes various log data to provide an important basis for security analysis and reasonably retains log data for audit and investigation. The access control module 12 controls access. The identity authentication module 13 implements a multi-factor authentication mechanism to ensure the authenticity and uniqueness of the user identity. The authority management module 14 reasonably allocates user and system permissions based on the principle of least authority and conducts regular reviews. The access audit module 15 records and analyzes all access behaviors in order to promptly detect abnormal and illegal operations. The asset identification module 8 comprehensively combs the organization's internal and external The information assets include hardware, software, data and services. The threat analysis module 9 evaluates potential network security threats, including external attacks, internal leaks, natural disasters and other threats. The vulnerability assessment module 10 identifies security weaknesses in the system through technical tools and manual inspections. The risk rating module 11 comprehensively evaluates threats, weaknesses and asset values, rates risks and determines priorities. The data encryption protection module 19 ensures the security of data transmission. The data transmission storage encryption module 20 encrypts and stores sensitive data to prevent illegal use after data leakage. The key module 21 establishes a complete key generation, storage, distribution and destruction mechanism to ensure key security. The intrusion detection module 16 deploys IDS / IPS to monitor network activities in real time and prevent potential attacks. The log analysis module 17 collects and analyzes logs of network devices, application systems and security tools to identify potential security threats. The traffic analysis module 18 uses traffic monitoring tools to analyze network traffic patterns and identify abnormal behaviors. The plan formulation module 22 formulates detailed emergency response plans for different types of network security incidents. The emergency response module 23 responds to incidents. The data recovery module 24 clarifies the procedures and steps for data recovery, system reconstruction and business recovery. The system audit module 25 regularly conducts comprehensive audits on the system to evaluate its security and compliance.

[0046] When using the present invention, switches, firewalls, wireless controllers, routers and other devices are installed on the bearing shell 38 in the cabinet 26. When all the devices are put into operation, the devices themselves will generate heat. At this time, the coolant in the water tank 40 is transported to the first connecting pipe 47 through the delivery pipe 42 by the pump 41, and is input into the water pipe 46 through the first connecting pipe 47. The water pipe 46 absorbs the heat emitted by the devices installed on the bearing shell 38 inside the cabinet 26 and transports it to the second connecting pipe 48 and the heat dissipation pipe 49. The second fan 45 is started, and the second fan 45 blows away the heat absorbed by the coolant in the heat dissipation pipe 49. At the same time, the first fan 43 is started and dissipates the heat of the devices in the cabinet 26. The heat is blown to the outside of the cabinet 26 through the second filter 37. The motor 31 is started regularly, and the motor 31 controls the threaded rod 30 to rotate, and the threaded rod 30 drives the slider 32 to move, and the slider 32 drives the brush 33 to move. The brush 33 scrapes away the dust on the surface of the first filter 35, which is convenient for continued heat dissipation.

[0047] The above is only a preferred embodiment of the present invention. Any person skilled in the art may modify the present invention by using the above technical solution or modify it into an equivalent technical solution. Therefore, any simple modification or equivalent replacement made according to the technical solution of the present invention shall fall within the scope of protection claimed by the present invention.

Claims

1. A network peripheral environment investigation system for network security, comprising a network environment investigation module (1), characterized in that: The network environment investigation module (1) is provided with a log management and retention module (7) at the connection end, and the network environment investigation module (1) is data-connected with the log management and retention module (7). The network environment investigation module (1) comprises a security policy customization management module (2), a risk assessment and identification module (3), a security protection deployment module (4), a network security detection and monitoring module (5), and a network security response and recovery module (6). The network environment investigation module (1) is data-connected with the security policy customization management module (2), the risk assessment and identification module (3), the security protection deployment module (4), the network security detection and monitoring module (5), and the network security response and recovery module (6) respectively.

2. A network peripheral environment investigation system for network security according to claim 1, characterized in that: The security policy customization management module (2) comprises an access control module (12), an identity authentication module (13), a rights management module (14) and an access audit module (15), and the security policy customization management module (2) is respectively connected to the access control module (12), the identity authentication module (13), the rights management module (14) and the access audit module (15) in data connection.

3. A network peripheral environment investigation system for network security according to claim 1, characterized in that: The risk assessment and identification module (3) comprises an asset identification module (8), a threat analysis module (9), a weakness assessment module (10) and a risk rating module (11); the risk assessment and identification module (3) is respectively data-connected to the asset identification module (8), the threat analysis module (9), the weakness assessment module (10) and the risk rating module (11).

4. The network peripheral environment investigation system for network security according to claim 1, characterized in that: The security protection deployment module (4) comprises a data encryption protection module (19), a data transmission storage encryption module (20) and a key module (21), and the security protection deployment module (4) is data-connected to the data encryption protection module (19), the data transmission storage encryption module (20) and the key module (21), respectively.

5. The network peripheral environment investigation system for network security according to claim 1, characterized in that: The network security detection and monitoring module (5) comprises an intrusion detection module (16), a log analysis module (17) and a flow analysis module (18); the network security detection and monitoring module (5) is respectively data-connected to the intrusion detection module (16), the log analysis module (17) and the flow analysis module (18).

6. A network peripheral environment investigation system for network security according to claim 1, characterized in that: The network security response recovery module (6) comprises a plan formulation module (22), an emergency response module (23), a data recovery module (24) and a system audit module (25), and the network security response recovery module (6) is respectively connected to the plan formulation module (22), the emergency response module (23), the data recovery module (24) and the system audit module (25).

7. The network peripheral environment investigation system for network security according to claim 1, characterized in that: The network security detection monitoring module (5) comprises a cabinet (26), a plurality of bearing shells (38) are fixedly arranged inside the cabinet (26), a plurality of through holes (39) are opened on one side of the bearing shells (38), a water tank (40) is fixedly arranged at the bottom of the cabinet (26), a pump (41) is fixedly arranged on one side of the water tank (40), an input end of the pump (41) extends into the interior of the water tank (40), an output end of the pump (41) is fixedly connected to a delivery pipe (42), the delivery pipe (42) extends out of the cabinet (26), and the delivery pipe (42) is fixedly connected to the output end of the pump (41). The first connecting pipe (47) is fixedly connected to the end of the cabinet (26); a water pipe (46) is fixedly arranged inside the bearing shell (38); one end of the water pipe (46) is fixedly connected to the first connecting pipe (47); the other side of the water pipe (46) is fixedly connected to a second connecting pipe (48); one side of the second connecting pipe (48) is fixedly connected to a heat dissipation pipe (49); one end of the heat dissipation pipe (49) extends into the water tank (40); a second installation shell (44) is fixedly arranged inside the cabinet (26); two second fans (45) are installed on one side of the second installation shell (44).

8. A network peripheral environment investigation system for network security according to claim 7, characterized in that: A plurality of supporting legs (28) are fixedly provided at the bottom of the cabinet (26); a cabinet door (27) is provided on one side of the cabinet (26); and the cabinet (26) and the cabinet door (27) are connected via hinges.

9. A network peripheral environment investigation system for network security according to claim 7, characterized in that: A plurality of second filter screens (37) are embedded on both sides of the cabinet (26).

10. The network peripheral environment investigation system for network security according to claim 7, characterized in that: A side shell (36) is fixedly provided on one side of the cabinet (26), a first mounting shell (34) is fixedly provided on one side of the side shell (36), two first filter screens (35) are embedded on one side of the first mounting shell (34), two first fans (43) are installed on one side of the first mounting shell (34), a connecting shell (29) is fixedly provided on the top of the side shell (36), a motor (31) is fixedly provided on one side of the connecting shell (29), a threaded rod (30) is fixedly connected to the output end of the motor (31), a slider (32) is provided on the outside of the threaded rod (30) through a threaded sleeve, and a brush (33) is fixedly provided on one side of the slider (32).