摘要
本文通过分析当前网络安全评估方法,总结了各自的特点和缺陷,依据大型企业专网的基本特点,提出了一个基于层次式建模和分布式体系结构的网络安全评估方案,实现了对大规模网络安全性的有效评估。方案通过将扫描功能、评估功能和汇总功能分别划分到不同的层次,避免了传统层次化评估模型中心节点数据负载过高的问题,同时也避免了协作式评估结构中网络通信开销大的缺点。
This paper analyzes the current network security evaluation methods, summarizes their characteristics and defects, and proposes a network security assessment solution based on hierarchical modeling and distributed architecture according to the basic characteristics of large enterprises private network. By the usage of this solution, the effective assessment of large-scale network security is achieved. In this solution, scanning function, evaluation function and aggregate function are divided into different levels. By doing this, the data overload problem of center node in the traditional hierarchical assessment model is solved, and the high cost of network communication in collaborative assessment model is also reduced.
出处
《网络安全技术与应用》
2013年第11期79-79,102,共2页
Network Security Technology & Application
关键词
网络安全
层次模型
分布式结构
Network security
Hierarchical Modeling
Distributed Architecture