| As the development of society, PC and internet gradually becomes the most common thing in our daily routines and activities, though which people do their work and relax themselves every day. Huge amounts of data transmitted through the Internet and finally were stored in various kinds of computers. This brings great convenience to people’s daily life. As the resource sharing further, the information security is more outstanding day by day. In a highly informationized society, information, regarded as an important strategic resource, can determine an enterprise’s prosperity and even may threaten national security. Information security has become the focus of attention for all.In order to achieve information security, most people may refer to some defend software, such as antivirus software, the firewall, anti-spy software. These software actually could knock off the threats, but most users can’t confirm whether their PC has defense capability. Because of the lack of professional knowledge, so in today,the vast majority of enterprises and institutions will be employ a professional team to be responsible for their network defense work. They build a secure enterprise network environment; we call it “the network security solutionsâ€.A perfect network security solution scheme is composed of a plurality of different system, each responsible for different functions, with each other to complete security task. Device access security check system is a modular system of the solutions, also known as device access security check module. This paper introduces the design and development of a complete equipment access security check system, including needs analysis, outline design, detailed design, system implementation and final test. The function of this system is to help user to check the security state of computer, the computer can judge whether effective defense common threat, but the system does not have the defensive ability. The system is divided into three modules, including the configuration module, the server module, the database module. Configuring user information and security policy which include a plurality of specific children policy, including antivirus, anti spyware software strategy, and these configuration data are stored in database. When the server receive the client’s securitycheck request, the server according to the client account to choose the corresponding security policy to check safety state, and gives the final processing results. Through the examination of the above process, system can judge whether the computer is in safe state, if the computer is in safe state, system allow it to access network, otherwise, require the computer to modify and re examination in accordance with the requirements. To guarantee the computer is in a safe state when access network. |