Multi-dimensional Network Security Situation Assessment

نویسندگان

  • Lina Zhu
  • Guoen Xia
  • Zuochang Zhang
  • Jianhua Li
  • Renjie Zhou
چکیده

Network security situation awareness is vital important for network security supervision. In order to obtain the network security situation effectively, a multidimensional assessment method is proposed in this paper. The method is composed of three dimensions at different levels, namely vulnerability, threat and basic operation, with quantitative calculation method for each index. In the service layer, CVSS standard is adopted to assess the vulnerability situation, and simplified DREAD model is chosen for the threat situation. In the node layer, the vulnerability situation in the service layer is added with a weight, the threat situation in the service layer is accumulated according to attack paths based on Markov model, and the basic operation situation is evaluated by DS evidence fusion of several host and network performance index. In the network layer, each situation equals to weighted summation of corresponding situation in the node layer. Experimental results show the ease of use of this method, and multi-dimensional situation depicts the overall safety evolution process of network system accurately and intuitively.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

On-Line Update of Situation Assessment Based on Asynchronous Data Streams

The subject of the paper is multi-agent architecture of and algorithmic basis for on-line situation assessment update based on asynchronous streams of input data received from multiple sources and having finite "life time". A case study from computer network security area that is anomaly detection is used for demonstration.

متن کامل

An Adaptive Assessment and Prediction Mechanism in Network Security Situation Awareness

Corresponding author: Yu-Beng Leau Faculty of Computing and Informatics, Universiti Malaysia Sabah, Malaysia Email: [email protected] Abstract: Network intrusion attempts have reached an alarming level. Cisco’s 2014 Security Report indicated that 50,000 network intrusions were detected and 80 million suspicious web requests were blocked daily. Hence, Intrusion Prevention System (IPS) had bee...

متن کامل

A Multi-Level Analysis Framework in Network Security Situation Awareness

Network Security Situation Awareness (NSSA) technology has been extensively studied in multi-data analyzing research these years. In this paper, we use a historical war story to explain the key points in situation awareness, present the conceptualizations and challenges aspects of NSSA, and discuss the methodologies of solving these problems. We provide an evaluation method for network security...

متن کامل

Network Information Security Situation Assessment Based on Bayesian Network

The situation of information security is difficult to be precise, autonomous and controllable. In this situation, the situation of the system is based on Fuzzy Dynamic Bayesian network. The model of situation awareness and situation estimation is constructed. The simulation results are compared with that of static Bayesian network model. The experimental results show that this method can better...

متن کامل

Special Section on Intelligent Systems for the Internet of Things

Internet of Things (IoT) brings the third development wave of the global information industry, which makes users, network, and perception devices cooperate more closely. However, if IoT has security problems, it may cause a variety of damage and even threaten human lives and properties. To improve the abilities of monitoring, providing emergency response, and predicting the development trend of...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2016