A Quantitative Network Security Evaluation Method and Evaluation System

A technology for network security assessment and network flow, applied in transmission systems, digital transmission systems, data exchange networks, etc., can solve the problems that cannot reflect the actual function and effect of security control measures, and it is difficult to quantitatively analyze the real security and confidentiality of the network. Explain the actual threat of the system and the possibility of the threat, so as to achieve a more certain effect of the evaluation result
CN108768774BActive Publication Date: 2020-09-29BEIJING PENGCHUANG TIANDI TECH

Patent Information

Authority / Receiving Office
CN ยท China
Patent Type
Patents(China)
Current Assignee / Owner
BEIJING PENGCHUANG TIANDI TECH
Publication Date
2020-09-29

Smart Images

  • Figure 1
    Figure 1
  • Figure 2
    Figure 2
  • Figure 3
    Figure 3
Patent Text Reader

Abstract

The invention provides a quantitative network security evaluation method and evaluation system. The method of the present invention includes: using the network flow data acquisition module to monitor the network flow in each network node in the target system, and collecting the network flow data of the network node and sending it to the model parameter calculation module and the network security evaluation module; using the model parameter calculation module Calculate the network communication analysis model parameters according to the network flow data and send them to the network security assessment module; use the network security assessment module to receive the network communication analysis model parameters, establish a network communication analysis model according to the network communication analysis model parameters, and pass the network communication analysis model Calculate the security level assessment report of the target system based on the network flow data. The evaluation method and evaluation system of the present invention calculate the non-directly measurable security level through the measurable network flow data, solve the problem that the network security confidentiality ability cannot be directly measured, and can provide scientific basis for data security protection.
Need to check novelty before this filing date? Find Prior Art

Description

technical field

[0001] The invention relates to the technical field of information security, in particular to a quantitative network security evaluation method and evaluation system. Background technique

[0002] Network security confidentiality assessment is very important for data security protection. Generally speaking, it is impossible to directly measure the network security and confidentiality capabilities in a real system, but different levels of network security and confidentiality capabilities will be displayed through its global network flow. For example, in a system with weak network security and confidentiality capabilities, information from The possibility of high-trust level security domains flowing to low-security-level security domains, the number of network flows, and the scope of occurrence are relatively large. In systems with high network security and confidentiality capabilities, information flows from high-trust level security domains to low-security le...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to View More