Network security situation assessment method based on evidence reasoning rule

A technology for network security and situational assessment, applied in the field of information security to achieve the effect of good situational assessment

Active Publication Date: 2018-05-15
HUBEI UNIV OF TECH
View PDF4 Cites 9 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0005] In order to solve the problem that the traditional method ignores the threat of normal behavior peaks to the network, the present invention provides a

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Network security situation assessment method based on evidence reasoning rule
  • Network security situation assessment method based on evidence reasoning rule
  • Network security situation assessment method based on evidence reasoning rule

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0018] In order to facilitate those of ordinary skill in the art to understand and implement the present invention, the present invention will be described in further detail below in conjunction with the accompanying drawings and embodiments. It should be understood that the implementation examples described here are only used to illustrate and explain the present invention, and are not intended to limit this invention.

[0019] In this embodiment, after comprehensively comparing various existing methods, the evidence reasoning rules are used for evaluation. Existing assessment methods mainly analyze the security incidents caused by exploit attacks, and do not pay enough attention to the threats caused by normal behavior peaks. Therefore, the present invention comprehensively analyzes the normal behavior and attack behavior in the network environment, so as to evaluate the network security situation.

[0020] please see figure 1 , a network security situation assessment meth...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a network security situation assessment method based on an evidence reasoning rule. The method comprises the following steps: determining a basic structure of network securitysituation assessment; acquiring and preprocessing network data; determining an assessment rule of the network situation; extracting characteristics of the network data and calculating the trust of a basic attribute; calculating the final trust of a generalized attribute; and calculating the network security situation. According to the network security situation assessment method based on the evidence reasoning rule provided by the invention, a network behavior is divided into a normal behavior and an aggressive behavior; and the security situation of a network is analyzed through the changes of network resources such as traffic, a memory, a CPU and a disk, and the security level of the network is assessed through the above security factors and the evidence reasoning rule. In addition, quantitative analysis is performed on the obtained security situation; and through the change of a network security situation value, the change of the network security situation can be reflected. An experimental result shows that the method is effective and feasible, and has a good situation assessment effect.

Description

technical field [0001] The invention belongs to the technical field of information security, and relates to a network security situation assessment method, in particular to a network security situation assessment method based on evidence reasoning rules. Background technique [0002] Network security situational awareness is a new type of network security technology. It evaluates the network security situation in real time from a macro perspective, and predicts the development trend of the network security situation, providing a basis for administrators' decision-making analysis. Situation assessment is the core part of it, which reflects the overall security status of the network by comprehensively analyzing security factors in all aspects of the network. TimBass introduced situational awareness into the field of network security for the first time, after which many scholars conducted a series of research on network security situation. [0003] Frigault, Wen Zhicheng and o...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
IPC IPC(8): H04L29/06
CPCH04L63/20H04L63/205
Inventor 钮焱李军童坤程珊刘宇强李星
Owner HUBEI UNIV OF TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products