Network security situation awareness based on network simulation

作者: Song-song Lu , Xiao-feng Wang , Li Mao

DOI: 10.1109/IWECA.2014.6845671

关键词: Asset (computer security)Computer security modelNetwork security policyNetwork Access ControlComputer securitySecurity information and event managementCloud computing securityNetwork securitySecurity serviceComputer science

摘要: Network security situation awareness is a comprehensive technology which can obtain and process the information of security, it plays an important role in field network security. As traditional methods mainly forecast value based on mathematical models, will result ignorance dynamic changes elements, this paper presents method simulation. This firstly constructs various simulation elements models; secondly scenario these constructed thirdly uses abstract packet-forwarding to quickly infer behaviors meanwhile recording log information; finally evaluates forecasts situation. Experiment proves that reduce stimulation time effectively evaluate accurately.

参考文章(6)
Mica R. Endsley, DESIGN AND EVALUATION FOR SITUATION AWARENESS ENHANCEMENT Proceedings of the Human Factors and Ergonomics Society Annual Meeting. ,vol. 32, pp. 97- 101 ,(1988) , 10.1177/154193128803200221
Bruce Potter, Software Security: Software & network security Network Security archive. ,vol. 2004, pp. 4- 5 ,(2004) , 10.1016/S1353-4858(04)00141-2
Xiu-Zhen CHEN, Quantitative Hierarchical Threat Evaluation Model for Network Security Journal of Software. ,vol. 17, pp. 885- ,(2006) , 10.1360/JOS170885
Peng Ning, Yun Cui, Douglas S. Reeves, Dingbang Xu, Techniques and tools for analyzing intrusion alerts ACM Transactions on Information and System Security. ,vol. 7, pp. 274- 318 ,(2004) , 10.1145/996943.996947
Zhang Zhao-xin, Dynamic Continuous Computing in Network Simulation Computer Simulation. ,(2009)