摘 要
目前服务器主流的操作系统是linux,主机的信息安全则显得尤为重要,网络入侵会给信息系统带来灾难性的后果,为了降低网络入侵带来的风险,保障信息系统的安全,可以通过对信息系统的审计来分析信息系统的安全性,所以本课题基于audit内核模块实现了linux主机信息安全审计。
实现基于audit内核模块的的linux主机信息安全审计,可以实现对linux主机实现文件读写审计,可执行文件的增加和删除审计,开机和重启审计,外设插入审计。
关键词:audit内核模块;linux;主机信息安全审计
Abstract
The current mainstream server operating system is linux, host of information security is especially important, information systems network intrusion would have disastrous consequences, in order to reduce the risk of network intrusion brought protect the security of information systems, information can be obtained by system audit to analyze the security of information systems, so this topic based on audit linux kernel module implements the host information security audit.
Achieve linux host information security audit based on audit kernel modules can be achieved for linux host implementation document literacy audit, increased audit and delete the executable files, boot and restart the audit, the audit peripheral insert.
Keywords: audit kernel module; linux; Host Information Security Audit
目 录