摘要
针对日益严峻的网络安全威胁,文章从加强内部安全管理入手,依据BS7799信息安全管理体系标准的规范及指标,提出了一个主动网络安全风险管理系统。该系统利用信息侦察代理获得园区网的基本配置及漏洞信息,在此基础上建立潜在入侵事件扩散模型,分析模型并对网络所面临的安全风险进行定性和定量评估,最后根据评估结果执行相应的风险控制措施,使风险等级降低到可接受的水平。文章还介绍了主动安全风险管理系统的结构,入侵扩散模型以及风险评估算法的具体细节,实验结果表明该系统能够有效地协助管理员建立完善的安全风险管理体系。
Network threats are more and more relentless. From the point of strengthening internal security management, an active network security risk management system (ANSRMS) complying with BS7799 is presented. ANSRMS uses information detecting agents to get configuration and vulnerabilities of the network, develops the spread model of underlying intrusion, provides qualitative and quantitive assessment of security risk, and finally adopts corresponding risk control policy to decrease the risk level. This paper introduces the details of the architecture of ANSRMS, spread model of intrusion and our risk assessment algorithm. The experiment results given shows that ANSRMS can efficiently help administrators to set up a completed security risk management framework.
出处
《微电子学与计算机》
CSCD
北大核心
2004年第6期1-5,9,共6页
Microelectronics & Computer
基金
国家自然科学基金重点项目(59937150)
国家863计划项目(2001AA413910)