摘要 |
Embodiments of the present invention provide a method and a device for synchronizing network data flow detection status. The method includes: receiving a first request sent by a first security device node, where the first request carries a first flow entry of a first data flow that is currently detected by the first security device node, and a flow entry is used to uniquely identify a data flow; determining first network data flow detection status corresponding to the first flow entry; sending a first response to the first security device node, where the first response carries the first network data flow detection status, so that the first security device node maintains, according to the first response, second network data flow detection status that corresponds to the first flow entry and is stored on the first security device node. According to the embodiments of the present invention, a security device node requests previous network data flow detection status of a data flow from a status synchronizing server so as to synchronize network data flow detection status, thereby allowing the security device node to detect a network attack in a more accurate way and improving network system security. |