张焱, 黄曙光, 朱俊茂, 任飞飞. 应用于网络态势感知的安全数据聚合分析[J]. 微电子学与计算机, 2011, 28(8): 123-125,128.
引用本文: 张焱, 黄曙光, 朱俊茂, 任飞飞. 应用于网络态势感知的安全数据聚合分析[J]. 微电子学与计算机, 2011, 28(8): 123-125,128.
ZHANG Yan, HUANG Shu-guang, ZHU Jun-mao, REN Fei-fei. Analysis of Security Data Fusion in Network Situation Awareness[J]. Microelectronics & Computer, 2011, 28(8): 123-125,128.
Citation: ZHANG Yan, HUANG Shu-guang, ZHU Jun-mao, REN Fei-fei. Analysis of Security Data Fusion in Network Situation Awareness[J]. Microelectronics & Computer, 2011, 28(8): 123-125,128.

应用于网络态势感知的安全数据聚合分析

Analysis of Security Data Fusion in Network Situation Awareness

  • 摘要: 为了处理异构网络安全设备产生的海量报警数据,提出一种基于加权DS证据理论和FCM的安全数据聚合算法.首先利用网络安全设备的权重以及对不同攻击的置信度信息,运用DS证据理论对报警数据进行初步融合,然后借助FCM的模糊推理能力对数据进行全局融合,克服了漏报率高的缺陷,曾强了系统处理复杂攻击的能力.

     

    Abstract: To deal with the mass alert data generated by heterogeneous network security equipments,this paper proposes a security data fusion algorithm based on weighted DS evidence theory and Fuzzy Cognitive Map.According to different weight and confidence of network security equipments,it initially fuses the alert data by DS evidence theory.Then it takes overall alert fusion through fuzzy reasoning of FCM.The proposed method overcomes the problem of high false negative rate and enhances the ability to cope with complex attacks.

     

/

返回文章
返回