A kind of integrated data information monitoring platform and monitoring system
Technical field
The present invention relates to information monitoring technical fields, and in particular to a kind of integrated data information monitoring platform and monitoring system
System.
Background technique
Information is as a kind of important resource, and more and more concerns have been arrived in the authorization of safety, to the pipe of information resources
The monitoring of reason and safety is an important direction.It is related to the sensitive information of country and enterprises and institutions' secret, direct relation
To the safety and interests of country and relevant unit.Sensitive information is once stolen or is destroyed, and will cause estimate to country
Direct or indirect influence and loss.Therefore reinforcing the management to sensitive information not only becomes academia's research with monitoring
Emphasis, while the attention of national defence institutes and enterprises and institutions.
Either server, database, application file or the network equipment can all generate many log informations, these logs
Information is for system manager, the association checking burdensome, and be unable to complete between each log.For special
For the deficienter administrator of industry knowledge, log analysis is had no way of doing it, and can not more complete the discovery of attack.Meanwhile city
Existing firewall is merely able to complete network auditing system function on field, defends external attack, and the attack that inside is initiated can not just be felt
Know and defends.
As the guiding value of IT infrastructure library (ITIL) in IT maintenance work is higher and higher, walk in information
Change the closed loop network management solution that the enterprise in forefront is sought for find the problem one after another, and user can be helped to solve the problems, such as
Certainly scheme, system in this way, user can be by the processes of specification, the completion maintenance work of high quality, to ensure enterprise
The service quality of industry information departments.
In view of problem above, a variety of logs, intelligent sensitive information, intelligent O&M how are associated with early in discovery system
There are the problem of, block the various paths of attack, attack occur after at the first time issue alarm just become in the art
Problem in urgent need to solve.
Summary of the invention
The object of the present invention is to provide one kind to monitor building environment, server in machine room performance and server info
The integrated data information monitoring platform and monitoring system of safety.
The present invention in order to achieve the above objectives, is achieved especially by following technical scheme:
A kind of integrated data information monitoring platform, the monitoring platform include:
Safe O&M monitoring modular: shape is run by the server in machine room in the same network segment of the automatic real-time collecting of snmp agreement
Condition monitors computer room server performance, generates safe O&M monitoring data;
Log monitoring modular: day is carried out to the server in machine room in same network segment by nxLog plug-in unit and rsyslog service
Will data monitoring generates log monitoring data;
Power & environment supervision module: real by monitoring the power & environment supervision equipment connecting with power & environment supervision server under same network segment
Now monitoring includes one of equipment normal operation status monitoring, abnormality prediction and on-line intelligent fault diagnosis or a variety of letters
Breath generates rotating ring monitoring data.
Further improvement to above-mentioned technical proposal, the monitoring platform further include database module, the safe O&M of generation
Monitoring data, log monitoring data and/or power & environment supervision data are stored in database module.
Further improvement to above-mentioned technical proposal, safe O&M monitoring data include host HTTP, host survival, host
Available space, swapace utilization rate, root partition, swap file system usage amount, login user number, system loading and process
Number, can monitor one of EMS memory occupation of C disk disk occupancy, server line duration, server cpu load and server or
A variety of data.
Further improvement to above-mentioned technical proposal, log monitoring data include full log collect backup, log it is real-time
Analysis, process real time monitoring, client access IP real time monitoring, system open and close monitoring, logs in system performance real time monitoring
Account access monitoring, user password modification monitoring, black and white lists alarm, non-working time access alarm, middleware malice are spied
One of alarm, middleware malicious attack alarm, web crawlers alarm and mirror site alarm or a variety of data.
The present invention also provides a kind of integrated data information monitoring systems using above-mentioned monitoring platform, including are connected to same
Monitoring platform, server in machine room, power & environment supervision server, power & environment supervision equipment and client in network segment, monitoring platform difference
With server in machine room, power & environment supervision server and client side's data connection, power & environment supervision equipment passes through with power & environment supervision server
Data-interface connection.
Further improvement to above-mentioned technical proposal, monitoring platform include integrated safe O&M monitoring modular, log prison
Survey module, power & environment supervision module and database module.
Further improvement to above-mentioned technical proposal, monitoring platform loads in server in machine room or power & environment supervision server
On.
Further improvement to above-mentioned technical proposal, power & environment supervision equipment include Temperature Humidity Sensor, smog alarm sensing
One or more of device, water sensor, power distribution cabinet, UPS and air-conditioning.
Further improvement to above-mentioned technical proposal, power & environment supervision server are also connected with battery and transmission alarm system,
Transmission alarm system includes wireless data transmission long-distance alarm apparatus and live combined aural and visual alarm.
Compared with prior art, technical solution of the present invention provides a user to while monitoring the warm and humid of building environment
The monitoring platform of degree, ups, cigarette sense, the server in machine room such as leak, distribution performance and server in machine room information security and monitoring system
The equipment such as power, environment, security protection, cabinet micro-environment, network, safety and information security are integrated into the unified progress of platform by system
Management, solves the technical costs of multi-platform management, the linking drawback of maintenance cost, while reducing multi-platform investment, improves user
The efficiency of management;When data acquire, efficient acquisition system log and remote is serviced by snmp agreement, nxLog plug-in unit, rsyslog
Journey is transferred to monitoring, actively listens to, the means such as industrial hardware, the stability of collaborative guarantee data transmission.
The present invention passes through the data record that monitors to computer room software and hardware, building environment and server log, Real-time Alarm, state
Potential analysis provides comprehensive, three-dimensional server in server room three-dimensional integrated detection, both may insure server for user
Safety and steady operation, and strength can be provided for user information safety and guarded;Pass through real-time monitoring, wrong report filtering, event discovery
Etc. mechanism, ensure the timeliness and accuracy rate of information.
Detailed description of the invention
Fig. 1 is the structural schematic diagram of monitoring system of the invention.
1, monitoring platform;11, safe O&M monitoring modular;12, log monitoring modular;13, power & environment supervision module;14, number
According to library module;2, server in machine room;3, power & environment supervision server;4, power & environment supervision equipment;5, client.
Specific embodiment
Invention is further described in detail with reference to the accompanying drawings and embodiments.
As shown in Figure 1, a kind of integrated data information monitoring platform, the monitoring platform 1 include safe O&M monitoring modular 11,
Log monitoring modular 12 and power & environment supervision module 13.Wherein, safe O&M monitoring modular 11 is received in real time automatically by snmp agreement
Collect 2 operation conditions of server in machine room in same network segment, monitors 2 performance of server in machine room, generate safe O&M monitoring data.
Log monitoring modular 12 carries out the server in machine room 2 in same network segment by nxLog plug-in unit and rsyslog service
Daily record data monitoring, generates log monitoring data.The present invention unified, centralized management by log, prevents the day locally saved
Will is destroyed;User behavior is recorded, substantially reduces the secondary change possibility of log, so as to really be returned to log
It puts, is convenient for track problems.Thus reach and the Server Security monitored is analyzed in real time, be accurately positioned security threat simultaneously
The purpose of alarm.
Power & environment supervision module 13 is by monitoring the power & environment supervision server in the same network segment connecting with power & environment supervision equipment 4
3, realize that monitoring includes one of equipment normal operation status monitoring, abnormality prediction and on-line intelligent fault diagnosis or more
Kind information, generates rotating ring monitoring data.
Preferably, which further includes database module 14, the safe O&M monitoring data of generation, log monitoring
Data and/or power & environment supervision data are stored in database module 14.
Safe O&M monitoring data include host HTTP, host survival, host available space, swapace utilization rate, root
Subregion, swap file system usage amount, login user number, system loading and process number can monitor C disk disk occupancy, server
One of EMS memory occupation of line duration, server cpu load and server or a variety of data.
Log monitoring data include complete collection backup, log is analyzed in real time, system performance real time monitoring, process are supervised in real time
Control, client access IP real time monitoring, system open and close monitoring, logon account access monitoring, user password modification monitor, are black
White list alarm, non-working time access alarm, middleware malice spy alarm, middleware malicious attack alarm, web crawlers
One of alarm and mirror site alarm or a variety of data.
The present invention also provides a kind of integrated data information monitoring systems using above-mentioned monitoring platform, including are connected to same
Monitoring platform 1, server in machine room 2, power & environment supervision server 3, power & environment supervision equipment 4 and client 5 in network segment, monitoring platform
1 takes with 5 data connection of server in machine room 2, power & environment supervision server 3 and client, power & environment supervision equipment 4 and power & environment supervision respectively
Business device 3 passes through data-interface and connects.Preferably, the load of monitoring platform 1 is in server in machine room 2 or on power & environment supervision server 3.
When needing to monitor power & environment supervision equipment 3, monitoring platform 1 is loaded on power & environment supervision server 3;It is monitored when not needing monitoring ring
Equipment 3, when being only monitored to the safe O&M and daily record data of server in machine room 2, monitoring platform 1 can be loaded in computer room service
On device 2.
Further, monitoring platform 1 includes integrated safe O&M monitoring modular 11, log monitoring modular 12, rotating ring prison
Control module 13 and database module 14.
Further, power & environment supervision equipment 4 includes Temperature Humidity Sensor, smog alarm sensor, water sensor, distribution
One or more of cabinet, UPS and air-conditioning.Power & environment supervision equipment 4 by intelligent data interface (RS232, RS485, RS422) or
Person increase acquisition sensing equipment access power & environment supervision server 3, realize equipment normal operation status monitoring, abnormality prediction,
The functions such as on-line intelligent fault diagnosis.
Preferably, power & environment supervision server 3 is also connected with battery and transmission alarm system, and transmission alarm system includes wireless
Data transmit long-distance alarm apparatus and live combined aural and visual alarm.
After monitoring platform of the invention is by counting all monitoring datas, summarizing, analyze, with list, echarts
The visual mode pattern such as chart is browsed by client 5, can intuitively intellectual analysis.
Monitoring system networking structure of the invention is based entirely on TCP/IP network communication protocol, to monitoring under same network segment
The multi-site centralized intelligence monitoring that Node distribution is wide, quantity is big provides most effective monitoring means, uses IP based network
Monitoring system is that the unified management of network operation maintenance is provided convenience.
It is initially set up when use for monitoring room environment, server in machine room performance and server in machine room information security
Monitoring server platform 1 is accessed the database module 14 of monitoring platform 1 by the browser of client 5, passes through corresponding authority
Account number cipher logs in monitoring system of the invention.The server in machine room of customer requirement monitoring is matched with equipment in system
It sets.2 host performance of monitoring room server is needed, host module is selected to be configured;It needs in monitoring room server
Service selects service module to be configured;The needs of monitoring log match monitored host information and black and white lists
It sets.Respectively by safe O&M monitoring modular 11, log monitoring modular 12 and power & environment supervision module 13 to each server of enterprise
Information carries out comprehensive monitoring.
It needs to show the O&M control under interface option and installment module in tool list in monitoring platform after configuration is complete,
It successively clicks and executes, monitoring data preservation is monitored at file.Monitoring log needs to save after configuration is complete, will monitor
Data are saved in database module 14 to monitor;Using 4 monitoring room environment of power & environment supervision equipment (temperature and humidity, ups, cigarette sense,
Leak, distribution etc.), and by the essential information of monitoring under the power & environment supervision module of monitoring platform 1;Pass through hardware device sensor
Push, Snmp Simple Network Management Protocol etc. automatically obtain monitoring information, respectively to building environment, server in machine room performance and
Server info is uninterruptedly monitored safely.
Monitoring data is constantly shown to the website homepage of monitoring platform 1 by monitoring system and large-size screen monitors show page, is checked and is
Statement management module in system, then it can be seen that after system counts all monitoring datas, summarizes, analyzing, with list, cake
The Visual Report Forms pattern such as shape figure carries out profound safety analysis.
Specific embodiment in the present invention is only explanation of the invention, is not limitation of the present invention, ability
Field technique personnel can according to need the modification that not creative contribution is made to the present embodiment after reading this specification, but
As long as all by the protection of Patent Law in scope of the presently claimed invention.