计算机应用 ›› 2005, Vol. 25 ›› Issue (07): 1558-1561.DOI: 10.3724/SP.J.1087.2005.01558

• 信息安全 • 上一篇    下一篇

用语义网技术建模特征识别和攻击模型

黄俊,张雷   

  1. 中国计量学院 计算机科学系
  • 收稿日期:2005-01-04 修回日期:2005-03-15 出版日期:2005-07-01 发布日期:2005-07-01
  • 作者简介:黄俊(1961-),男,湖北武汉人,高级工程师,主要研究方向:网络应用;张雷(1979- ),男,河南周口人,讲师,主要研究方向:模式识别、网络应用

Using semantic Web technology to build signatures identification and attack model

HUANG Jun,ZHANG Lei   

  1. Department of Computer Science, China Jiliang University
  • Received:2005-01-04 Revised:2005-03-15 Online:2005-07-01 Published:2005-07-01

摘要:

安全特征识别和攻击的预测是网络安全领域内必不可少的功能部分,而攻击模型和其他安全特征的描述和定义需要专门的语言。然而,目前此类语言存在诸多问题,如语言功能单一,适用性差;缺乏开放性,语义不一致和缺乏可重用性等。为了改善这种情况,利用本体建模方法,通过一个典型攻击行为的建模,证明本体语言具有的特点支持其作为安全特征描述语言。

关键词: 本体, 网络安全, 攻击语言, 特征识别

Abstract:

Signatures indentification of security and attack forecast are integrant function parts of network security field, and the description and definition of attack models and other security signatures request special language. But there exist many questions on the current such languages, such as solitary function of language and weak adaptablility; lack of openness and semantic coherence, and absent reuse ablility. In order to improve this state, the ontology's modeling means were used. It was demonstrated that ontology's language is fit for the description and definition of attack models and other security signatures by a representative attack.

Key words: ontology, network security, attack language, signatures identification

中图分类号: