谢丽霞, 仇晓锐, 李学菲. 基于攻击图模型的网络安全风险评估研究[J]. 微电子学与计算机, 2014, 31(7): 77-83.
引用本文: 谢丽霞, 仇晓锐, 李学菲. 基于攻击图模型的网络安全风险评估研究[J]. 微电子学与计算机, 2014, 31(7): 77-83.
XIE Li-xia, CHOU Xiao-rui, LI Xue-fei. Research on Network Security Risk Assessment Based on Attack Graph Model[J]. Microelectronics & Computer, 2014, 31(7): 77-83.
Citation: XIE Li-xia, CHOU Xiao-rui, LI Xue-fei. Research on Network Security Risk Assessment Based on Attack Graph Model[J]. Microelectronics & Computer, 2014, 31(7): 77-83.

基于攻击图模型的网络安全风险评估研究

Research on Network Security Risk Assessment Based on Attack Graph Model

  • 摘要: 提出一种基于攻击图的多智能代理(Agent)的网络安全风险评估模型.首先,提出了基于多Agent的风险评估架构并给出了主Agent和子Agent的主要模块的功能设计,以网络中主机上的组件为基本节点,采用多Agent协同工作的方式构建攻击图.其次,定义五种风险指数并给出网络安全风险指数的计算方法.最后,基于Java的Agent开发框架(Java Agent Development Framework,JADE)实现了该评估模型,通过对仿真网络的风险评估验证了此模型的可行性和有效性.

     

    Abstract: This paper proposes a multi-agent network security risk assessment model based on attack graph.Firstly,this paper proposes the architecture of multi-Agent risk assessment and gives the function design of main modules for main and subsidiary Agent.Multi-Agents are adopted to generate attack graph synergistically by using the components of network hosts as the basic nodes.Secondly,five risk indexes are defined and the method to compute the risk index of network security is given.Finally,the network security risk assessment model is performed based on the Java Agent Development Framework (JADE),and a risk assessment experiment with simulation network is conducted.The experimental results prove that our model is a feasible and effective approach to the network security risk assessment.

     

/

返回文章
返回