Power enterprise information network security management system having security pre-warning function

A network security and security early warning technology, which is applied in the transmission system, digital transmission system, data exchange network, etc., can solve the problems that the system cannot work, reduce the continuity of system work and work efficiency, etc., to achieve good maintenance and improve security , good warning effect

Inactive Publication Date: 2017-12-19
STATE GRID ZHEJIANG TONGLU POWER SUPPLY +2
4 Cites 4 Cited by

AI-Extracted Technical Summary

Problems solved by technology

[0003] Although the existing electric power enterprise information network security management system has been able to solve some information network security problems, there are still some problems. For example, when encountering suspected network information security pro...
the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Method used

The benefit of said way is, by arranging safety early warning module, such safety early warning module can make corresponding early warning prompt according to the monitoring information of safety monitoring module, preset early warning threshold value in safety early warning module, when early warning value is less than early warning threshold value , the safety early warning module sends out an early warning prompt; when the early warning value is greater than the early warning threshold, the safety early warning module directly sends out an alarm prompt; avoiding the interruption of system operation after direct alarm due to inaccurate or incomplete monitoring information, so as to ensure the continuity of system work and further improve system work efficiency.
The benefit of this embodiment is that, by setting up the safety learning system, the safety manager, i.e., the electric power enterprise employee, can learn the latest network security knowledge, so as to better maintain the electric power enterprise information network system, and the network security knowledge Including typical network security event analysis summary and/or network security information operation process and/or interpretation of new network security policies, so that security administrators can learn more real-time, cutting-edge and multi-dimensional information n...
the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Abstract

The invention provides a power enterprise information network security management system having a security pre-warning function. The power enterprise information network security management system having the security pre-warning function comprises a firewall, a gateway, an intrusion prevention system IPS, a security system, an access control and isolation system and an identity authentication system; and the security system comprises a security monitoring module, a security pre-warning module, a security response module, a security analysis module, a security alarm module, a security operation and maintenance module and a security evaluation module. Due to setting of the security pre-warning module, the security pre-warning module can give a corresponding pre-warning prompt according to the monitoring information of the security monitoring module; a pre-warning threshold value is pre-set in the security pre-warning module; when a pre-warning value is less than the pre-warning threshold value, the security pre-warning module gives a pre-warning prompt; when the pre-warning value is greater than the pre-warning threshold value, the security pre-warning module directly gives an alarm prompt; therefore, interruption of the system operation after an alarm is directly given due to inaccurate or incomplete monitoring information can be avoided; therefore, the working continuity of the system is ensured; and thus, the working efficiency of the system is increased.

Application Domain

Technology Topic

Authentication systemSecurity alarm +13

Image

  • Power enterprise information network security management system having security pre-warning function
  • Power enterprise information network security management system having security pre-warning function
  • Power enterprise information network security management system having security pre-warning function

Examples

  • Experimental program(2)

Example Embodiment

[0034] Embodiment one:
[0035] like Figures 1 to 3 As shown, the present invention provides a power enterprise information network security management system with security warning, including firewall, gateway, intrusion prevention system IPS, security system, access control and isolation system, and identity authentication system.
[0036] In this embodiment, the security system includes a security monitoring module, a security warning module, a security response module, a security analysis module, a security alarm module, a security operation and maintenance module, and a security assessment module.
[0037] The security monitoring module is used to monitor the home page and various devices of the power enterprise information network;
[0038] The safety early warning module is used to provide early warning prompts according to the monitoring information of the safety monitoring module. Among them, the early warning threshold is preset in the safety early warning module. When the early warning value is less than the early warning threshold, the safety early warning module sends out early warning prompts; , the safety warning module directly sends out an alarm prompt;
[0039] The safety response module is used to perform safety response according to the warning prompt of the safety warning module;
[0040] The security analysis module is used to analyze user network behavior and network security events;
[0041] The security alarm module is used for selectively alarming based on the analysis results of the security analysis module;
[0042] The security operation and maintenance module is used to perform corresponding network maintenance according to the alarm information of the network security alarm module;
[0043] The security assessment module is used to assess the risk of user network behaviors and/or network security events, and send alarm information to the security alarm module for user network behaviors and/or network security events whose risk is greater than a preset risk threshold.
[0044] The advantage of the above method is that by setting the safety warning module, the safety warning module can make corresponding warning prompts according to the monitoring information of the safety monitoring module. The safety warning module is preset with a warning threshold. The module sends out an early warning prompt; when the early warning value is greater than the early warning threshold, the safety early warning module directly sends out an alarm prompt; avoiding interruption of system operation after direct alarm due to inaccurate or incomplete monitoring information, so as to ensure the continuity of system work and improve the work of the system efficiency.
[0045] Among them, the security early warning module includes association analysis sub-module, early warning rule sub-module, security trend sub-module and threat trend sub-module, so that the early warning information can be classified into categories, so that the security early warning module can make multi-dimensional judgments on each information and improve the accuracy of the security early warning module. , thereby improving the security of the system.
[0046] Among them, the safety warning module includes displaying a warning dialog box on the home page for safety warning prompts. At the same time, the safety warning module also includes buzzers and warning lights set on each device, and through the ringing of the buzzer and the flickering of the warning lights Carry out safety early warning reminder, through the comprehensive warning of three reminder methods, achieve a good early warning and reminder function, and will not affect the normal work of the security administrator.
[0047]Among them, the identity authentication system includes ID recognition authentication mode, fingerprint recognition authentication mode and face recognition authentication mode. First, ID recognition authentication is performed, then fingerprint recognition authentication is performed, and face recognition authentication is finally performed. Through triple identification authentication, the login is improved. The security of the system can well prevent illegal operations by using other people's information to log in to the system, and further improves the security and reliability of the power enterprise information network security management system.
[0048] Wherein, the security analysis module includes a user network behavior analysis sub-module and a network security event evaluation sub-module.
[0049] Wherein, the user's network behavior and/or network security event is generated through normalization processing of the security log by the security device.
[0050] Among them, the user network behavior and/or the risk degree of network security incidents are evaluated based on fuzzy matrix analytic hierarchy process.
[0051] It is understandable that the security warning module can also provide a security warning prompt only by displaying a warning dialog box on the home page; or, the security warning module can also perform a security warning prompt only The flashing of the warning light can be used to give a safety warning prompt; or a combination of two or two of the three methods is also available.

Example Embodiment

[0052] Embodiment two:
[0053] The difference between this embodiment and the first embodiment is that the power enterprise information network security management system also includes a security learning system.
[0054] In this example, if Figure 4 As shown, it also includes a safety learning system. The safety learning system is used for safety administrators to learn network safety knowledge so as to maintain the information network of electric power enterprises.
[0055] Among them, network security knowledge includes the analysis and summary of typical network security incidents, the operation process of network security information and the interpretation of new network security policies.
[0056] The advantage of this embodiment is that by setting up a security learning system, the security administrator, that is, the employees of the electric power enterprise, can learn the latest network security knowledge in order to better maintain the information network system of the electric power enterprise, and the network security knowledge includes typical network Security event analysis summary and/or network security information operation process and/or interpretation of new network security policies enable security administrators to learn more real-time, cutting-edge and multi-dimensional information network security knowledge, which greatly improves security administrators knowledge reserves to better maintain the power enterprise information network system.
[0057] It is understandable that network security knowledge may only include the analysis and summary of typical network security incidents; or, network security knowledge may only include network security information operation procedures; or, network security knowledge may only include interpretation of new network security policies; or It is also possible to combine two or two of these three kinds of knowledge.
the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

no PUM

Description & Claims & Application Information

We can also present the details of the Description, Claims and Application information to help users get a comprehensive understanding of the technical details of the patent, such as background art, summary of invention, brief description of drawings, description of embodiments, and other original content. On the other hand, users can also determine the specific scope of protection of the technology through the list of claims; as well as understand the changes in the life cycle of the technology with the presentation of the patent timeline. Login to view more.
the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Similar technology patents

Method and device for determining URSP

ActiveCN110557798AGuaranteed continuityWireless communicationRadio access technologySelection strategy
Owner:CHINA UNITED NETWORK COMM GRP CO LTD

Classification and recommendation of technical efficacy words

  • Guaranteed continuity
  • Improve work efficiency

Improved novel energy automobile charging device

Owner:XIAMEN YINLV JIEYUAN ENVIRONMENTAL PROTECTION TECH CO LTD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products