摘要
鉴于网络安全事件采集的多源性,提出了基于多源数据融合的网络风险评估方法。旨在研究如何处理具有不确定因素的海量的多源数据以及如何对网络进行风险评估。把D-S证据理论应用于风险评估的数据融合阶段,同时结合主机攻击成功发生率和主机内部脆弱性及相应的权重值,计算出某一个时段网络的整体风险值,使网络管理员可以动态地调整安全控制措施的优先级。试验结果表明了该方法的可行性和有效性。
Network risk assessment method based on multi-source data fusion is proposed in view of multi-sources in network security-event collections.The aim is to study how to deal with the uncertainties of large multi-source data and how to conduct risk assessment on the network.Combined with Attack success rate of the host and host internal vulnerability and the corresponding weights,the D-S evidence theory is applied to the data integration stage of network risk assessment,the overall risk value of one time is calculated,thus,network administrator may dynamically prioritize the implementation of countermeasures.At last,The experiment results show that the method is feasible and effective.
出处
《舰船电子工程》
2011年第4期60-65,共6页
Ship Electronic Engineering