期刊文献+

统一网络安全管理平台模型研究

Research of United Platform of Network Security Management Model
在线阅读 下载PDF
导出
摘要 针对分布式部署大量异构安全设备来构建网络安全防御体系而产生的海量安全事件信息难以有效组织管理以及对这些异地分布的安全监测系统难以集中管理的现状,提出统一网络安全管理平台模型,该平台根据云南省安全监测系统实际分布情况,利用分布式技术构建了一个层次化的信息集成系统。设计并分析了面向网络安全管理人员的体系结构,利用风险评估和事件关联的方法实时分析网络的风险状况,降低误报率,使管理人员准确定位安全事故的发生点以便及时做出响应。文中还讨论了分布式数据模型、安全事件规范化模型、安全通信和控制协议等关键技术。 As the use of distributed deployment of a large number of heterogeneous security devices in order to build network security defense system generates a mass of security event information which is difficult to effectively manage and the security monitoring systems that are deployed in different places are difficult to manage integratedly, united platform model for network security management is proposed. According to the actual distribution of Yunnan security monitoring systems, the platform establish a level of information system by the use of distributed technology. Platform designs and analyzes its oriented network security managers system architecture and uses risk assessment and event correlation to analyze network operating conditions in real-time, reduce false alarm ratio so that network security managers can find security accidents precisely and respond promptly. And then the paper describes key technologies such as distributed data model,secure event standardization model,secure communication and control protocol in detail.
出处 《微计算机信息》 2011年第12期111-113,共3页 Control & Automation
关键词 网络安全管理平台 分布式数据模型 事件规范化 安全通信协议 风险评估 事件关联 Management Platform for Network Security Distributed Data Model Event Standardization Assessment Secure Communication Protocol Risk Assessment Alert Correlation
  • 相关文献

参考文献4

二级参考文献25

  • 1杨灿,刘中伟.一种网络安全评估算法[J].微计算机信息,2006,22(09X):97-99. 被引量:3
  • 2张永铮,方滨兴,迟悦,云晓春.用于评估网络信息系统的风险传播模型[J].软件学报,2007,18(1):137-145. 被引量:76
  • 3王永杰,鲜明,刘进,王国玉.基于攻击图模型的网络安全评估研究[J].通信学报,2007,28(3):29-34. 被引量:58
  • 4SHEYNER Scenario Graphs and Attack Graphs [D].School of Computer Science, Carnegie Mellon University, 2004
  • 5A system-based system for net-work-vulunerability analysis system [A].Proceedings of the 9th ACM conference on Computer and Communications Security[c].1998
  • 6Automated generation and analysis is of attack graphs [A]. Proceeding of the 2002 IEEE Symposium on security and privacy[C]. 2OO2
  • 7国家科技创新基金支持的2008年度中小型科技企业的科技创新项目《复杂异构广域综合信息系统的保密安全保障体系》立项号码:08C26224502238.
  • 8科技部863计划项目《铁道部客票网络安全管理系统》编号2002AA145021.
  • 9国家科技攻关计划课题“铁路客票安全认证和电子支付的研制”编号2002BA407803-2.
  • 10国家保密局《涉及国家秘密的计算机信息系统分级保护技术要求》(BMB17-2006).

共引文献30

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部