集对分析的可信网络安全态势评估与预测
CSTR:
作者:
作者单位:

(北京邮电大学 计算机学院,100876 北京,sherrywukun@163.com)

作者简介:

通讯作者:

中图分类号:

O751

基金项目:

国家高技术研究发展基金资助项目(2007CB310704); 国家自然科学基金资助项目(60821001).


Trusted network security situational awareness and forecast based on SPA
Author:
Affiliation:

Fund Project:

  • 摘要
  • |
  • 图/表
  • |
  • 访问统计
  • |
  • 参考文献
  • |
  • 相似文献
  • |
  • 引证文献
  • |
  • 资源附件
  • |
  • 文章评论
    摘要:

    为了解决可信网络中网络管理和安全监控审计的问题,通过对可信网络连接框架(TNC)和网络态势感知体系(CSA)的研究,针对可信网络安全中多数据源确定性与不确定性的特点,提出了基于集对分析的网络安全态势评估与预测方法SPSAF.SPSAF首先采用基于特征库的方法审计网络连接信息、系统管理信息、系统监控信息和应用服务信息,然后综合改进的熵权法和层次分析法提取安全态势指标权重,再利用集对分析方法对安全态势指标进行评估得到网络安全态势值,进而绘制网络安全态势图,最后采用Box-Jenkin模型基于安全态势值预测网络安全趋势.仿真实验结果表明SPSAF能够准确有效地反映当前及未来的网络安全态势,有助于管理员有效地制定网络安全策略,并能及时发现风险,迅速准确地调整策略和实施应对措施,提供更全面可靠的网络安全保障.

    Abstract:

    To solve the problems of network management and security monitoring and auditing in trusted network, by researching the framework of trusted network connect (TNC) and the architecture of cyberspace situational awareness (CSA), in view of the certain and uncertain characteristics of multi-source information in trusted network security, a new security situational awareness and forecast based on set pair analysis (SPA) called SPSAF is proposed. SPSAF audited network connection information, system management information, system monitoring information and application service information by the method based on feature base. The security situational indexes were extracted by the method of improved entropy method (EM) and analytic hierarchy process (AHP). The SPA method was utilized to assess these indexes to get the value of network security situation, and the security-situation-graph of network was drawn. The time series of the assessment results was analyzed via the Box-Jenkin model to forecast the network security trend. The simulation experiment results show that SPSAF is accurate and effective to reflect the network security situation and its trend, which can help the administrator to make security policies efficiently, to discover risks timely, to adjust policies and take relevant protective or emergency measures quickly and accurately, and to ensure overall and reliable security.

    参考文献
    相似文献
    引证文献
引用本文

吴琨,白中英.集对分析的可信网络安全态势评估与预测[J].哈尔滨工业大学学报,2012,44(3):112. DOI:10.11918/j. issn.0367-6234.2012.03.022

复制
相关视频

分享
文章指标
  • 点击次数:
  • 下载次数:
  • HTML阅读次数:
  • 引用次数:
历史
  • 收稿日期:
  • 最后修改日期:
  • 录用日期:
  • 在线发布日期: 2013-02-26
  • 出版日期:
文章二维码