
目录
1、攻防演习概述 ......................................................................................................................................................2
1.1.攻防演习背景 .............................................................................................................................................2
1.2.攻击角度看防守.........................................................................................................................................2
1.3.演习防守方法论.........................................................................................................................................3
2.组织及职责分工 .....................................................................................................................................................4
2.1.攻防演习组织 .............................................................................................................................................4
2.2 职责分工 ......................................................................................................................................................5
2.3.各阶段工作任务.........................................................................................................................................6
3.防守工作方案..........................................................................................................................................................9
3.1.第一阶段:准备阶段................................................................................................................................9
3.1.1.防守方案编制 ..............................................................................................................................10
3.1.2.防守工作启动会..........................................................................................................................10
3.1.3.重要工作开展 ..............................................................................................................................10
3.2.第二阶段:安全自查和整改阶段 ......................................................................................................11
3.2.1.网络安全检查 ..............................................................................................................................11
3.2.2.主机安全检查 ..............................................................................................................................12
3.2.3.应用系统安全检查 .....................................................................................................................12
3.2.4.运维终端安全检查 .....................................................................................................................13
3.2.5.日志审计 .......................................................................................................................................13
3.2.6.备份效性检查 ..............................................................................................................................14
3.2.7.安全意识培训 ..............................................................................................................................14
3.2.8.安全整改加固 ..............................................................................................................................15
3.3.第三阶段:攻防预演习阶段 ...............................................................................................................15
3.3.1.预演习启动会 ..............................................................................................................................15
3.3.2.授权及备案...................................................................................................................................16
3.3.3.预演习平台...................................................................................................................................16
3.3.4.预演习攻击...................................................................................................................................16
3.3.5.预演习防守...................................................................................................................................17
3.3.6 预演习总结..................................................................................................................................18
3.4 第四阶段:正式防护阶段...................................................................................................................18
3.4.1.安全事件实时监测 .....................................................................................................................19
3.4.2.事件分析与处置..........................................................................................................................19
3.4.3.防护总结与整改..........................................................................................................................19
4.演习组织及工作计划..........................................................................................................................................20
4.1.演习工作单位和组织分工....................................................................................................................20
4.1.1.明确参演单位 ..............................................................................................................................20
4.1.2.演习工作组织架构 .....................................................................................................................20
4.1.3.演习工作职责分工 .....................................................................................................................20
4.2.初步工作计划...........................................................................................................................................21
5.流量安全监测分析系统部署............................................................................................................................23
6.主机加固实施 .......................................................................................................................................................25