This paper proposes a network bordary security monitoring system based on PKI. The design uses multiple safe
technologies, analysis deeply the association between network data flow and system log, it can detect the intrusion
activities and position invasion source accurately in time. The experiment result shows that it can reduce the rate of false
alarm or missing alarm of the security incident effectively.