€¦  · Web view报表能够支持word、pdf等格式导出 日志数据管理...

Click here to load reader

Transcript of €¦  · Web view报表能够支持word、pdf等格式导出 日志数据管理...

1

2

3

4

5

6

1.3050%3050%15

2.105%

3

24860

7*242012

30

1.

2.

3.

4.

1.

1.1

1.2 CISPCISP-BDSACISP-CSE

1.3

2.

3.

3.1

3.2 30

3.3

3.4

3.5

1.

2.

3.

1

2

2

()

12

3

GPU1

3

4

GPU2

2

5

GPU3

3

6

1

7

1

8

2

9

10Gb

2

10

25Gb

2

11

BMC

2

12

10G

1

13

25G

2

14

100G

1

15

2

16

1

17

2

18

1

19

FC

2

20

10

21

1

1

22

2

1

23

WEB

1

24

APT

1

25

1

26

1

27

1

28

1

29

1

30

10

31

1

32

1

33

1

34

1

35

1

36

1

1.

2Intel Xeon E5-2650 v4

64G16GB24DDR42400MT/sRDIMMLRDIMM1.5TB

RAID2GB2SAS 1GriadRAID0/1/5/10

82.5242.52600G 10K SAS44T 7.2K SAS

256GB SATA M.2

10PCIe 3.03GPU

2U550W

5USB3.0

12()

2.

Intel Xeon SCALABLE

24DDR42666MT/sRDIMMLRDIMM3.0TB

RAID2GB2SAS riadRAID0/1/5/10

82.5

NVMe32NVMe

40

256GB SATA M.2

10PCIe 3.03GPU

2U800W

5USB3.06USB

1VGA2VGA

1Gb

KVMFirmware/3D

CCCCECPSEPA

2Intel Xeon Gold 6140

256G32GB

2480G S4500 SSD

12()1225Gb(25G)2116Gb FC HBA(16G)

3.GPU1

Intel Xeon SCALABLE

24DDR42666MT/sRDIMMLRDIMM3.0TB

2SAS riadRAID0/1/5/10

82.5

NVMe32NVMe

40

256GB SATA M.2

10PCIe 3.03GPU

2U1600W

5USB3.06USB

1VGA2VGA

1Gb

KVMFirmware/3D

CCCCECPSEPA

2Intel Xeon Gold 6140

256G32GB

2480G S4500 SSD

12()1225Gb(25G)2116Gb FC HBA(16G)

1NVIDIA Tesla V100 16GB GPU

4.GPU2

Intel Xeon SCALABLE

24DDR42666MT/sRDIMMLRDIMM

2SAS riad2GRAID0/1/5/10

NVMe

4U

41600W

PCIE

10PCIe3.0 16 slots20PCIe3.0 8 slots

10GPU20GPU

4USB3.0(2)1()1VGA()

100Gb/56Gb/40Gb/25Gb/10GbGPU

CPU

CPU

2Intel Xeon Gold 6148

256G32GB

2480G S4500 SSD102T SATA

12()1225Gb(25G)

2NVIDIA Tesla V100 16GB GPU

5.GPU3

Intel Xeon SCALABLE

24DDR42666MT/sRDIMMLRDIMM3.0TB

2SAS riadRAID0/1/5/10

82.5

NVMe32NVMe

40

256GB SATA M.2

10PCIe 3.03GPU

2480G S4500 SSD

2U1600W

5USB3.06USB

1VGA2VGA

1Gb

KVMFirmware/3D

CCCCECPSEPA

2Intel Xeon Gold 6140

256G32GB

12()1225Gb(25G)2116Gb FC HBA(16G)

2NVIDIA M60 GPU

6.

Intel Xeon SCALABLE

24DDR42666MT/sRDIMMLRDIMM3.0TB

2SAS riad1GbRAID0/1/5/10

82.5242.5

NVMe32NVMe

40

10PCIe 3.03GPU

2U800W

5USB3.06USB

1VGA2VGA

1Gb

KVMFirmware/3D

CCCCECPSEPA

2Intel Xeon Gold 511864G32GB6600G 10K SAS41T SATA12

7.

Portal802.1xvpnEduroamipv4ipv6

B/S

Linux

H3CJuniperCISCOBrasACAC

ADLDAPRADIUS

HTTP

IPMACVLAN

pcwebportalpc

Eduroam

emailWeb

Eduroam

/

http restful

ipmac

Eduroam

eduroameduroameduroameduroameduroam

eduroam

eduroam/

IPv6

IPv6PortalIPv4/v6IPv6

802.1xMACPortalVPN

HTTPS

httpsDV SSLGeoTrust2

2

5002

3

8.

10Gb25Gb

CLOS+

4

110Tbps115000Mpps

21+1

X86X86

SDN

SSD

6

N+M

40G100G25GE

48

40G48

100G48

FCoE

FWIPSACGLB

ACL

ACLACL1M

ACL

VLAN ACL

QOS

83SPWRRSP+WRR

8K

Shapping

WRED

802.1pTOSDSCPEXP

NSF/GR for OSFP/BGP/IS-IS

NSR50ms

BFDBFD for VRRP/BGP/IS-IS/OSPF/RSVP/LDP/RIP/MPLS VPNSR-TE

MAC

MAC750K

IPv4 4194K

ARP

ARP1048K

(N:1)4

1:N

VxLAN

VxLAN

2+13+1100G1840G410G48240G2100G2

9.10Gb

25Gb

2.5Tbps1000Mpps

3

MAC280KMAC

ARP200KARP

250K

BUFFER16M

4840GE6

USB

MINI USB

QOS

=8

SPStrict PriorityWDRRWeighted deficit Round RobinWFQWeighted Fair QueuingSP+WDRRSP+WFQ

9

IP

()>=160G>=320G

>=10KM

RIP v1/2OSPFBGPRIPngOSPF V3IS-IS V6BGP+ FOR IPV6IPV6VRRP

PIM-DMPIM-SMIGMPIGMP Snooping

MLDMLD SnoopingIPV6 PIM-DMIPV6 PIM-SM IPv6

RSPAN

4

MPLS VPN

MCEMPLS L3VPNMPLS L2VPNVPLS

VXLAN GW

OpenFlow+NetconfVXLAN

TRILL

SNMP V1/V2/V3SSHv2

WEB

sFlowNetstream

PPSbps

Web

4840GE62+12340G2

10.25Gb

10Gb

4Tbps2000Mpps

5

MAC280K

320K

Buffer32M

25GE48100GE82

USB

MINI USB

QOS

=8

SPStrict PriorityWDRRWeighted deficit Round RobinWFQWeighted Fair QueuingSP+WDRRSP+WFQ

IP

>=10

()>=800G>=1.6T

>=10KM

RIP v1/2OSPFBGPRIPngOSPF V3IS-IS V6BGP+ FOR IPV6IPV6VRRP

PIM-DMPIM-SMIGMPIGMP SnoopingMLDMLD SnoopingIPV6 PIM-DMIPV6 PIM-SM IPv6

RSPAN

4

MPLS VPN

MCEMPLS L3VPNMPLS L2VPNVPLS

VXLAN GW

OpenFlow+NetconfVXLAN

EVPN

RDMARoCE

Service chain

SNMP V1/V2/V3SSHv2

WEB

sFlowNetstream

PPSbps

Web

25GE48100GE824+125G20100G2

11.BMC

336Gbps

132Mpps

MAC32K

48GE4SFP+

9

40G

IP

MACIP

VLAN

VLANVLAN

MACVLAN

VLAN(VLAN ID)4094

ERPS

ERPS

CPU

CPUCPU

IGMP v1/v2/v3MLD v1/v2

IGMP Snooping v1/v2/v3MLD Snooping v1/v2

PIM Snooping

MLD Proxy

VLAN

PIM-DMPIM-SMPIM-SSM

MSDPMSDP for IPv6

MBGPMBGP for Ipv6

IPv4RIP V1/V2OSPF

IPv6RIPng

RRPP

Smartlink

RSTP

MSTP

PVST

ACL

ACl1K

VLANACL

IPv6 ACL

ACL

802.1xMAC

SDN/OPENFLOW

OPENFLOW 1.3OpenflowEQUAL

Group table

Meter

SNMP V1/V2/V3RMONSSHV2

OAM(802.1AG 802.3AH)

IEEE 802.3azEEE

downSchedule job

CMMI 5

12.10G

SFP+(850nm300mLC)

13.25G

25G SFP28(850nm100mSRMMLC)

14.100G

100G QSFP28(850nm100mOM4SR4MPO)

15.

8combo482

X86/

1

40Gbps200040

RIPOSPFBGP

NAT

NATDNSFTPH.323NAT ALG

VPN

IPSecL2TPGRE VPNSSL VPN

IPsec VPN

IPsec VPN

MACIPMAC802.1q VLAN

/)

)

3000QQ)

URL

URL+URLURL

URLURL

IP()QQ)

QQAndroidIOS

//SQLIDS/IPS

7000)

37000

HTTPSPOP3SSMTPSIMAPS

APT

APT

IPv6

IPV6IPV6IPV6IPV6IPV6 GRE/IPSEC VPNIPV6IPV6

IPV6IPSec VPNDDoS

DNSIPhashIPhashhashACL12

DNSDNSDNS

DDoS

DOS/DDOSLandSmurfFraggleWinNukePing of DeathTear DropIP SpoofingSYN FloodICMP FloodUDP FloodHTTP FloodccARPTCPICMPDNS FloodACK FloodFIN FloodFloodTiny-Fragment

DDoS

SM1/2/3/4

SDNVXLAN

CPU/NAT

/

SNMPv1SNMPv2SNMPv3RMON

APIRESTfulNetConf

CMMI 5

()

ANVA

CNNVDCNVD

ISCCC

EAL3+

16.

OEM

Vmware VAAISRMVASAVVOLVmware

1.6.1SNIA SMI-S CTPSNIA

2018Q1IDC10IDC

2Active-Active

LUN

PCI-E16SANSANNAS

NASFC-SANIP-SANSANNASNASFC-SANIP-SAN

SPC-1 V30.3ms0.5msIOPS40SPC-1SPC-1

256GBNASFlashCachePAMSSD Cache

6.4TB

1616Gb FCSFP410G ISCSI61Gbps iSCSI

8SAS3.0384Gb

1.92TB SSD308TB 7.2K SAS40600GB 10K SAS4

1000

SSDSASNL-SASSATA

RAIDRAID1RAID0RAID10RAID5RAID6RAID

RAID3030

API

ITIT

QoSIOPS

IPv4IPv6IPv4/v6IP SANIPv4/v6

call-home

BS

BSHTTPSRSA

1.

2.

3.100G

1.

2.EMCHPHDSIBMHuaweiNetApp

3.

4.FCiSCSILUN

5.

6.

RAIDRAID

2000

50

UOMl

280SANSAN2IBIP80Gbs44

SANRAIDLUNQos

1002000256PB256TBPOSIX Mac OS

CIFSNFSNFSCIFS

1.Windows XP/Win7 3264

2.Windows 2003/2008/2012 Server 3264

3. 63264

4.SUSE Linux enterprise 113264

5.AIX64

50TB

Veritas

VeritasVeritas

glist

3800/400

17.

SAN

191U

FC16G

16Gb

SNMPTelnetWeb/GUI

48

SAN2416Gb FC2416Gb

D_PortE_PortEX_PortF_PortM_Port

U_PortAccess Gateway F_Port N_Port NPIV

Frame

37*244

18.

500

2U62

HTML5B/SWebGUI

IP

3CPU

NTP

CentOS64

SNMP

UPS

SNMPWMISSHTELNETSHELLIPMIHTTPAgentRsyslogTCPDUMP

TCPUDP

ApacheNginxIISFtpDNSDHCPWINSMysqlOraclePOP3SmtpIMAP

ICMP

TCP/UDP

/

WindowsLinuxAIXHP-UXSolaris

CPU/SWAPIO

ApacheIISNginxWEB

OracleMS SQLMySQL

WebLogicWebSphereTomcat

1

IP

TOP10

CPUMemoryDisk

/

WindowsLinux/Unix

SyslogSyslog-ngWindows Logs

/

TopN

IP

IP

IP

IPExcelPDF

PDF

WEB

WORDEXCELPDFJPG

Pingtraceroute

4

/

EMAIL

QQ

3

19.FC

16Gb SFP+SW XCVR

20.

SFP(850nm300mLC)

21.1

CNCERT

CNNVD

2U

64MIPSX86ASIC

300W2BypassBypass

12*GE12*SFP4*12244//LAN/WAN

40Gbps

70

700

IPSec VPN1024

SSL VPN1500

IPSec VPN4.8G

IPS22G

DDNS

NAT

NAT44

ISPRIPOSPFISPweb

VRF

rootVRFVRFVRF

vrfip

vrf

VLAN TAG

4G

4G4GIPSec VPNweb

IPv6

IPv6IPv6

IPv6

IPv6URLIPv6

IPv6

NAT64

NATH.323ALG

second IP200second IPweb

telnetftpimappop3smtprloginhttporaclemysqlpostgres10web

112web

5

IPSIPUDPTCPICMPHTTPFTPPOP3SMTP8web

IPSsyslogweb

4000+Backdoorbufferoverflowdosimp2pvulnerabilityscanwebcgiworm

/

200

ZIP/RAR520web

TAR

HTTPIPURLMethodRefererUser-AgentCookieUrl-argsweb

CSRFCCServerX-Powered-By(4xx)(5xx)web

IPIPweb

IPIPweb

IPSec VPN

IPSec VPNVPN

DES3DESAES

IPSec VPNIPweb

HAIPSec VPNHAVPN

IPSec VPNVPN

IPSec VPN

IPSec VPN

SSL VPN

logo

SSL VPNIP

SSL VPNVPN

P2PIM3500

BYODiOSweb

IP

web

URLURLweb

SSL

HTTPShttpsHTTPS

HTTPS

HTTPSHTTPS

QoSIPQoS

4QoS/

web

web

Top

IPweb

111web

IDNATNATNATNAT25web

IPIPweb

360wifiwifi

PPPoEweb

MAC

WEB PortalRadiusLDAP LDAPIMCAASSAMAAAURLweb

portalradiusNAS-Identifier(32)AC

HTTPSportal

portal

WiFi2.0pchttpaccess_tokenhttpportalweb

AD

web

LDAPADOPEN LDAP

/

2

IOSAPP

PINGTCPDNS

web

PC4

7

pppoedhcp

hash

5

+

DNS

DNSDNS

DNS

DNS

DNS

VPNHA

WebSSL

UUUSB

PKI

X.509 V3CER/PEM/PKCS12

CA

CA

CRL

webPingTracerouteTCP SynIPweb

HTTPSHTTPTELNETSSH

Web

SNMP

v1v2v3MACIPMAC

web

HTMLPDFFTP

3

37*24

1

7-CISP-CSE

22.2

CNCERT

CNNVD

2U

64MIPSX86ASIC

300W2BypassBypass

12*GE12*SFP4*12244//LAN/WAN

20Gbps

50

500

IPSec VPN1024

SSL VPN1500

IPSec VPN2G

IPS12G

DDNS

NAT

NAT44

ISPRIPOSPFISPweb

VRF

rootVRFVRFVRF

vrfip

vrf

VLAN TAG

4G

4G4GIPSec VPNweb

IPv6

IPv6IPv6

IPv6

IPv6URLIPv6

IPv6

NAT64

NATH.323ALG

second IP200second IPweb

IPweb

IPv4IPv6Ping of DeathLand-BaseTear DropTCP flagWinnukeSmurfIPIP SpoofJolt2

telnetftpimappop3smtprloginhttporaclemysqlpostgres10web

112web

5

IPSIPUDPTCPICMPHTTPFTPPOP3SMTP8web

IPSsyslogweb

4000+Backdoorbufferoverflowdosimp2pvulnerabilityscanwebcgiworm

/

200

ZIP/RAR520web

TAR

HTTPIPURLMethodRefererUser-AgentCookieUrl-argsweb

CSRFCCServerX-Powered-By(4xx)(5xx)web

IPIPweb

IPIPweb

IPSec VPN

IPSec VPNVPN

DES3DESAES

IPSec VPNIPweb

HAIPSec VPNHAVPN

IPSec VPNVPN

IPSec VPN

IPSec VPN

SSL VPN

logo

SSL VPNIP

SSL VPNVPN

P2PIM3500

BYODiOSweb

IP

web

URLURLweb

SSL

HTTPShttpsHTTPS

HTTPS

HTTPSHTTPS

QoSIPQoS

4QoS/

web

web

Top

IPweb

111web

IDNATNATNATNAT25web

IPIPweb

360wifiwifi

PPPoEweb

MAC

WEB PortalRadiusLDAPLDAPIMCAASSAMAAAURLweb

portalradiusNAS-Identifier(32)AC

HTTPSportal

portal

WiFi2.0pchttpaccess_tokenhttpportalweb

AD

web

LDAPADOPEN LDAP

/

IOSAPP

PINGTCPDNS

web

PC4

7

pppoedhcp

hash

5

+

DNS

DNSDNS

DNS

DNS

DNS

VPNHA

WebSSL

UUUSB

PKI

X.509 V3CER/PEM/PKCS12

CA

CA

CRL

webPingTracerouteTCP SynIPweb

HTTPSHTTPTELNETSSH

Web

SNMP

v1v2v3MACIPMAC

web

HTMLPDFFTP

3

37*24

1

6-CISP-BDSA

23.WEB

IT

EAL3+

2U1+1

2*GE8*4*GE4*GE

16*GE/

4000MbpsHTTP30HTTP(CPS)3

IPTCPTCP

IPTCP

IPWAF

KVMXenVMWareWAF

VLANVLAN

-BYPASSBYPASS

IP

ipv4/ipv6

WEB

WEBVLAN

(XSS)SQLCookieLDAPSSI

HTTPHTTP

WebshellWeshell

WAFNiktoParos proxyWebScarabWebInspectWhiskerlibwhiskerBurpsuiteWiktoPangolinWatchfire AppScanN-StealthAcunetix Web Vulnerability Scanner

CMSWEB

WEB

CookieCookieCookieCookie Httponly

URL

IP

IP

URL

IP

WEB

CC

URLIPCCURLURLIPIP+URLIP+User_AgentIPCCCCCC

IP

IP

IPIP

HTTPURLUserAgentPOSTcookie

PCI-DSS

WORDPDF

Syslog

URLIP

SSL

HTTPSWEBHTTPSHTTPS

HTTPS

SSL/TLS

SSLIPIP

APPWAF24IPIP

APT

WAFWeb

HTTPS

LDAP

SNMPv3SNMP v1v2c

NTP

APT

3

37*24

1

6-CISP-BDSA

24.APT

2U

1+1

2TRAID1

*2RJ45*4SFP*4

RJ45*4SFP*4SFP*2

IP

4Gbps2Gbps

HTTP10/

200/24

10/24

30

HTTPFTPSMTPPOP3SMBIMAPDNSMysqlMSSQLDB2OracleLDAPVXLANHTTPS

WEBC&C IP/URLWEBDGASMBWEB

IPIPIPWEB

IPIP

TelnetFTPPOP3SMTPIMAP

IPIPIPIPURLHostUser-AgentAcceptAccept-LanguageAccept-EncodingAccept-CharsetKeep-AliveConnectionCookie

C&C IP/URLIP

IPIP

IPIP

WEB

HTTPWEB

SQL

WEBSHELLwebshellURL

IPMACHTTPURL

SQLXSSWebshellAPT

APT

DNSC&CDNS

WEBSHELLWAFAPTWAF

Mail

webmailSMTPPOP3

webmailsql

HTTPFTPSMBSMTPPOP3

doc, xls, ppt, swf, pdf, java, rar, zip, rar, exe, vbs, scr, htmljs

APT0day

ROP

MD5

host

16IP20MB

CPU

IPIPURL

kafkasyslogsnmpftp

WORDPDF

web

APT

ISCCC

3%98%97%

APT

3

37*24

1

6-CISP-BDSA

25.

PCMTBF()65000

CF

IntelI7CPU3.4G48

16GB DDR3 1600Mhz

2TB2T*2RAID1RAID516T

2

44

3286

16

40000/

1500/

agent

()

hadoop1006-83000

OracleSQL-ServerDB2InformixSybaseMySQL

PostgreSQLHANATeradataCache()

MongoDBHbase

HTTPTelnetFTPSMTPPOP3DCOM

SQL server2005

web

SQL

sshrdp

B/S

agentjava web100%

300SQL

18

IP

SPHINX

/IPSQLSQL

35

SOX

DDLDMLSQL

SQL

WordPDFppt

20

IP

IP

SyslogSNMPftp

B/S

IP

NTPSNMP(v1V2V3)

sql

EAL3+

3C

3

37*24

1

6-CISP-BDSA

26.

2U2TRAID14100/1000M21000M2SFP1101+1

1000

1000300

CF

HA

HA

/IP

5

ADLDAPRADIUSCAAD/LDAP

getpostsoaphttpSendCloud

APP

APPAPP

usbkeyUSBkey

5USBkey5

user1user2USBkeyuser3APP

AD/LDAP+AD/LDAP+APPAD/LDAP+AD/LDAP+

SSHTELNETRDPVNCFTPSFTPrloginOracleMSSQLMySQLVMware vSphere Client

DB2oraclemysqlsqlserverwindows

IE

IEHTTP/HTTPSweb

socks5/http/ssh

/

IP

2

IP

windowslinux/unix

FTPSFTP

WebIEWebmstscVNCXshellSecureCRTPuttywinscpflashFXPFileZillaSecureFX

H5sshtelnetrloginrdpvncH5

Windowsplsqlsqlplustoadsqlwbssmsmysql.exe

mstsc/Xshell/SecureCRT/Putty

SFTP/FTP

winscp/flashFXP/SecureFXSFTP/FTP

SSH

SecurCRT/Xshell/OpenSSHSSH

macnavicatmysqloracle

SecurCRT/Xshell

AD/LDAPAD/LDAP

IP/

Zmodem

SSHsz/rzzmodem

SFTP/FTP

SFTP/FTP

RDP

RDP-

RDP

RDP

RDP

RDP

SQL

DB2oraclemysqlsql serverSQL

///

SFTP/FTP

IP/IP//

//FTP/SFTP

PDFdochtml

SOX

/syslog

SNMP

SNMP

pingTCPUDP

API

APIAPI

SSH/RDP

SOC

SOCSOCSOC

3C

OEM

6-CISP-BDSA

27.

IT

CNCERT

WEB

21console

16GB2T*2 raid1

CF

32GB

4T(4)HBA

44882

200

EPS9000EPS

EPS12000EPS

SyslogSNMP TrapOPSecFTP

(Agent)

Cisco()Juniper/F5H3C(fortinet)FoundryNokiaCheckPointHillstone()BEAapcarborclamdelldigiumEMCEudoragooglelinksysMcafeenetappNASsonicwallvigorSymantecHardened-PHPfoundertech()allotIBMnortel()citrix()watchguardWINDOWSLinux/UNIX syslogIISApache

XenVMWareHyper-V

550

CVEBugtraqOWASP

B/SSSL

APM

WindowsLinuxAixFeeBSDHP-UX/Tru64Max OSSun Solarismysqloracleweblogictomcatwebapache

Windowscpu

Linux515cpu

MysqlSQL

OracleSGA

ApacheDNSCPU

tomcatweblogic

IBM Rational AppScan

Web

NetSparker Web

Nessus

OpenVAS

73000+CVE

OWASPWeb

GeoSecGIS

IP

Google

()

1000+

SOXISO27001WEB

PDFWord

B/S

CPU

3

1

24