首页 | 本学科首页   官方微博 | 高级检索  
     

基于异构系统的统一网络安全监控体系模型
引用本文:刘兰,李之棠,李家春,梅成刚.基于异构系统的统一网络安全监控体系模型[J].小型微型计算机系统,2006,27(9):1682-1686.
作者姓名:刘兰  李之棠  李家春  梅成刚
作者单位:1. 华中科技大学,计算机学院,湖北,武汉,430074;广东技术师范学院,电子系,广东,广州,510655
2. 华中科技大学,计算机学院,湖北,武汉,430074
3. 华南理工大学,计算机科学与工程学院,广东,广州,510641
基金项目:国家网络与信息安全保障持续发展计划;国家重点基础研究发展计划(973计划)
摘    要:针对大规模异构网络环境下安全行为的复杂性,现有的网络技术与管理缺少对海量原始数据的良好安全监控手段,本文提出构建统一的网络安全监控体系的思想,对各种异构数据源数据(审计日志和流量数据)进行标准化表示和整合,采用数据挖掘和小波分析的方法对数据进行分析处理,通过关联规则、流量规则和规则序列模式分析出整个网络的运行情况,对系统分析结果给出可视化结论,调整安全策略以适应网络安全动态性和整体性.

关 键 词:网络行为学  关联  数据挖掘  小波分析  监测
文章编号:1000-1220(2006)09-1682-05
收稿时间:03 31 2005 12:00AM
修稿时间:2005-03-31

Hybrid-System Based Integrated Network Security Supervision System Model
LIU Lan,LI Zhi-tang,LI Jia-chun,MEI Cheng-gang.Hybrid-System Based Integrated Network Security Supervision System Model[J].Mini-micro Systems,2006,27(9):1682-1686.
Authors:LIU Lan  LI Zhi-tang  LI Jia-chun  MEI Cheng-gang
Affiliation:1.Department of Computer Architecture, Huazhong University of Science and Technology, Wuhan 430074, China;2.Department of Electronic Information, Guangdong Polytechnic Normal University, Guangzhou 510655, China;3.Department of Computer Science, South China University of Technology, Guangzhou 510641, China
Abstract:In view of the complexity of network behavior among the hybrid systems,the technology and management of existing network systems are lack of enough effective security supervision measures for the great capability of the raw data.This paper developed a system model to supervise the security of network system,by normalizing and integrating the raw data from hybrid data-sources(including Syslog and traffic etc.),then using data-mining and wavelet technology to analyze the integrated information.At last this system used correlation rules,traffic rules and rule sequential pattern to analyze and drew out a visual conclusion of the network system security status which helps to adjust policy to enhance the system security.
Keywords:network behavior  correlation  mining  wavelet  supervision
本文献已被 CNKI 维普 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号