資源描述:
《基于markov博弈模型的網(wǎng)絡(luò)安全態(tài)勢感知方法new》由會員上傳分享,免費在線閱讀,更多相關(guān)內(nèi)容在教育資源-天天文庫。
1、萬方數(shù)據(jù)軟件學(xué)報ISSN1000.9825,CODENRUXUEWJournalofSoft.a(chǎn)ye,2011,22(3):495-508【doi:10.3724/SELl001.2011.03751】@中國科學(xué)院軟件研究所版權(quán)所有.基于Markov博弈模型的網(wǎng)絡(luò)安全態(tài)勢感知方法幸張勇+,譚小彬,崔孝林,奚宏生(中國科學(xué)技術(shù)大學(xué)自動化系,安徽合肥230027)E-mail:jos@iiscas.a(chǎn)c.cnhttp://www.jos.org.cnTel/Fax:+86.10.62562563NetworkSecuritySituationAwarenessAppro
2、achBasedonMarkovGameModelZHANGYong+,TANXiao..Bin,CUIXiao--Lin,XIHong-一Sheng(DepartmaatofAutomation,UniversityofScienceandTechnologyofChina,Hefei230027,Chimf)+Correspondingauthor:E—mail:jz矗ang@zmail.ustc.edu.enZhangY,TanXB,CuiXL,XiHS.NetworksecuritysituationawarenessapproachbasedonMarko
3、vgamemodel.JournalofSoftware,2011,22(3):495-508.http://www.jos.org..cn/1000--9825/3751.htmAbstract:Toanalyzetheinfluenceofpropagationonanetworksystemandaccuratelyevaluatesystemsecurity,thispaperproposesanapproachtoimprovetheawarenessofnetworksecurity,basedontheMarkovGameModelIIMGM).Thi
4、sapproachgainsastandarddataofassets,threats,andvulnerabilitiesviafusingavarietyofsystemsecuritydatacollectedbymulti一.sensors.Foreverythreat.,itanalyzestheruleofpropagationandbuiMsathreatpropagationnetwork(TPN).ByusingtheGameTheorytoanalyzethebehaviorsofthreats,administrators,andordinar
5、yusers,itestablishesathreeplayerMGM.Inordertomaketheevaluationprocessareal-timeoperation,itoptimizestherelatedalgorithm.TheMGMcarldynamicallyevaluatesystemsecuritysituationandprovidethebestreinforcementschemafortheadministrator.Theevaluationofaspecificnetworkindicatesthattheapproachiss
6、uitableforarealnetworkenvironment.,andtheevaluationresultispreciseandefficient.ThereinforcementschemaCaneffectivelycurbthepropagationofthreats.Keywords:networksecuritysituationawareness;threatpropagationnetwork;MarkovgamemodelI摘要:為了分析威脅傳播對網(wǎng)絡(luò)系統(tǒng)的影響,準(zhǔn)確.全面地評估系統(tǒng)的安全性,并給出相應(yīng)的加固方案,提出一種基于Markov博
7、弈分析的網(wǎng)絡(luò)安全態(tài)勢感知方法通過對多傳感器檢測到的安全數(shù)據(jù)進(jìn)行融合,得到資產(chǎn)、威脅和脆弱性的規(guī)范化數(shù)據(jù);對每個威脅,分析其傳播規(guī)律,建立相應(yīng)的威脅傳播網(wǎng)絡(luò);通過對威脅、管理員和普通用戶的行為進(jìn)行博弈分析,建立三方參與的Markov博弈模型,并對相關(guān)算法進(jìn)行優(yōu)化分析,使得評估過程能夠?qū)崟r運行.Markov博弈模型能夠動態(tài)評估系統(tǒng)安全態(tài)勢,并為管理員提供最佳的加固方案.通過對具體網(wǎng)絡(luò)的測評分析表明,基于Markov博弈分析的方法符合實際應(yīng)用,評估結(jié)果準(zhǔn)確、有效,提供的加固方案可有效抑制威脅的擴散.關(guān)鍵詞:網(wǎng)絡(luò)安全態(tài)勢感知;威脅傳播網(wǎng)絡(luò).;Markov博弈模型中圖法分