← 返回首页

网络安全

Network Security

课程介绍 Course Introduction

学分:3 | 先修课:计算机网络 | 学期:第6学期

网络安全课程深入讲解网络协议的安全机制与攻防技术。内容涵盖TCP/IP协议栈漏洞、防火墙技术、入侵检测与防御系统(IDS/IPS)、VPN与IPSec、SSL/TLS协议、无线网络安全、DDoS攻击防护、网络流量分析等。学生将掌握网络攻击的常见模式与防御策略,能够独立部署企业级网络安全防护体系。

This course provides an in-depth examination of security mechanisms and attack-defense techniques for network protocols. Topics include TCP/IP stack vulnerabilities, firewall technology, intrusion detection and prevention systems (IDS/IPS), VPN and IPSec, SSL/TLS protocols, wireless network security, DDoS attack mitigation, and network traffic analysis. Students master common attack patterns and defense strategies, and can independently deploy enterprise-grade network security systems.

大作业 Final Project

作业标题:网络安全攻防实践

完成网络安全攻防实践,包括端口扫描、漏洞利用、权限提升等环节,编写攻击报告和防御建议。

Complete network security attack and defense practice, including port scanning, vulnerability exploitation, privilege escalation, and write attack reports and defense recommendations.

实施步骤 Implementation Steps

📋 示例:搭建一个企业网络攻防实验环境,模拟真实的攻击与防御场景。你需要配置防火墙规则、入侵检测系统(Snort),模拟SQL注入和DDoS攻击,分析日志并制定加固方案堵住安全漏洞。
步骤 1
网络拓扑分析
分析网络拓扑结构,识别关键节点和链路
产出:网络拓扑分析报告
步骤 2
威胁建模
识别潜在安全威胁和攻击向量
产出:威胁建模报告
步骤 3
安全方案设计
设计防火墙规则、入侵检测、VPN等安全措施
产出:安全方案文档
步骤 4
方案实施
实施安全方案,配置安全设备
产出:实施记录
步骤 5
安全评估
评估安全方案效果,生成安全评估报告
产出:安全评估报告

Steps

Step 1
Network Topology Analysis
Analyze network topology, identify key nodes
Deliverable: Topology Analysis Report
Step 2
Threat Modeling
Identify potential security threats and attack vectors
Deliverable: Threat Modeling Report
Step 3
Security Design
Design firewall rules, IDS, VPN security measures
Deliverable: Security Design Doc
Step 4
Implementation
Implement security measures, configure devices
Deliverable: Implementation Record
Step 5
Security Assessment
Evaluate security effectiveness
Deliverable: Security Assessment Report

Prerequisites · International Exams · Contact · Back to top · Home