计算机应用 ›› 2012, Vol. 32 ›› Issue (02): 472-479.DOI: 10.3724/SP.J.1087.2012.00472

• 信息安全 • 上一篇    下一篇

网络安全风险评估的云决策

陈亮1,潘惠勇2   

  1. 1. 河南工业大学 信息科学与工程学院,郑州 450001
    2. 中原工学院 计算机学院,郑州 450007
  • 收稿日期:2011-07-20 修回日期:2011-09-26 发布日期:2012-02-23 出版日期:2012-02-01
  • 通讯作者: 陈亮
  • 作者简介:陈亮(1978-), 男,河南开封人,讲师,主要研究方向:人工智能、网络安全;
    潘惠勇(1977-),男,河南南阳人,讲师,主要研究方向:软件工程、网络安全。
  • 基金资助:
    郑州市科技发展计划项目(2010GYXM374)

Cloud-model based decision-making for network risk assessment

CHEN Liang1,PAN Hui-yong2   

  1. 1. College of Information Science and Engineering, Henan University of Technology, Zhengzhou Henan 450001, China
    2. School of Computer Science, Zhongyuan University of Technology, Zhengzhou Henan 450007, China
  • Received:2011-07-20 Revised:2011-09-26 Online:2012-02-23 Published:2012-02-01
  • Contact: CHEN Liang

摘要: 为了更合理地评估网络安全风险,利用云模型集成随机性和模糊性的优点,提出一种基于云模型的网络安全风险评估和决策方法。首先,通过采样系统正常状态信息,构造标准概念云;在进行风险评估时,采样处于风险状态时的信息,计算其云数字特征;然后利用改进的基于云滴距离的云相似度算法,计算与标准概念云的相似度,相似度最大的即为最终输出结果。最后,通过Kddcup99数据集进行模拟攻击及性能采样仿真实验。结果表明,该方法最大限度地保留了风险评估过程中固有的不确定性和模糊性,提高了评估结果的可信性。

关键词: 网络安全, 风险评估, 云模型, 模糊性, 随机性

Abstract: In order to assess the risk of network security more reasonably, a cloud-model based method for network risk assessment was proposed. It took advantage of cloud model featuring perfect combination of randomness and fuzziness. Firstly, standard clouds were constructed by sampling normal system status. When making risk assessments, the current risk state was sampled to calculate the cloud characteristics, then the cloud similarity algorithm based on the distance measurement of cloud droplets was used to calculate the similarity between them, and the biggest similarity was the final output. Finally, Kddcup99 data set was used to do simulated attack and performance sampling test. The experimental results show that the proposed method retains the maximum uncertainty of network intrusion assessment and improves the credibility of the results.

Key words: network security, risk assessment, cloud model, fuzziness, randomness

中图分类号: