摘要
网络安全态势感知系统NSSAS(Network Security Situation Awareness System)能够感知网络安全的整体态势,对提高网络的应急响应和主动防御能力具有重要作用。现有的NSSAS处理能力有限,难以应用于国家骨干网等大规模网络。介绍了一个面向大规模网络的安全态势感知系统YHSSAS,首先提出一个网络安全态势感知模型,然后从数据集成、关联分析、指标体系、事件预测几个方面介绍了涉及的关键技术。
NSSAS(Network Security Situation Awareness System) can perceive the overall network security situation.It plays an important role in improving the emergency response capacity and active defense capability of the networks.Existing NSSAS is limited in processing capacity,which is difficult to apply to the national backbone network and other large-scale networks.This paper introduced a NSSAS designed for large-scale networks named YHSSAS.The situational awareness model was proposed first,and then several key technologies,including data integration,correlation analysis,indicators quantification and event predication,were detailed.
出处
《计算机科学》
CSCD
北大核心
2011年第2期4-8,37,共6页
Computer Science
基金
"863"国家高技术研究发展计划(2007AA010502
2007AA01Z474
2006AA01Z451)资助。