针对目前日益严重的网络安全问题,提出了一套经济实用的主动防御安全解决体系。该体系有机结合了多种安全技术,征对网络的开放和复杂性,提出了一个完整的主动防御体系模型,采用蜜罐技术提取攻击行为特征库,通过XML 消息传递机制。本文首先对网络的安全和结构进行分析,在此基础上给出了系统的体系模型,最后对涉及的关键技术做了探讨。 关键词:主动防御,入侵检测、防火墙、XML 消息传递 Abstract: Presently, aiming at the increasingly serious network security, the paper proposes a set of more efficient and perfect model of active defense. This model organically joins various security techniques, Toward the opening and complexity to network , has put forward an intact active defense system model, adopt the technology of the honeynet to draw the characteristic storehouse of the attack , transmit the mechanism through XML news.. Firstly, the design thought of the security prevention system is described in the paper, and based on this thought, the architecture of system is presented. Lastly, the relevant sore technology is discussed. Keywords: active defense, Intrusion detection, firewall, XML news transfer