摘要
在5G共建共享网络中,海量安全日志和告警审计使得安全数据缺乏分析、安全事件处置效率低下.面对威胁感知能力缺失、安全管理困难等诸多痛点,提出了5G共建共享网络可视化安全态势感知模型和可视化解决方案.对空口、运维、系统、传输、配置核查5大领域面临的攻击检测进行全面安全态势感知,进行了测试验证.对安全事件进行关联分析,识别跨域攻击链,发现攻击者核心意图,帮助客户实现主动、动态、可度量、可视化的5G共建共享网络安全、稳定运营及安全产业的快速发展.
In the 5G co-construction and sharing networks,the massive security logs and alarm audits have resulted in a lack of analysis of security data,and the disposal of security incidents is inefficient.In the face of many pain points such as lacking of threat perception ability and difficulty in security management,we propose a visualizing security situation awareness model and visualization solutions in 5G co-construction and sharing networks.The comprehensive security situation awareness of the attack detection in the five fields of air port,operation and maintenance,system,transmission and configuration verification was tested and verified.Conduct correlation analysis of security incidents,identify cross-domain attack chain,discover the core intentions of attackers,to assist customers with achieving active,dynamic,measurable,visual 5G co-construction and sharing network security,stable operation and the rapid development of the security industry.
作者
吴夏
宋仕斌
姜山
王毅
邓力为
Wu Xia;Song Shibin;Jiang Shan;Wang Yi;and Deng Liwei(Sichuan Branch,China Telecom Co.,Ltd.,Chengdu 610015;Sichuan Public Project Consulting Management Co.,Ltd.,Chengdu 610058;Jinjiang College,Sichuan University,Meishan,Sichuan 620860)
出处
《信息安全研究》
CSCD
北大核心
2024年第3期277-283,共7页
Journal of Information Security Research
关键词
5G共建共享
威胁分析
安全态势感知
取证溯源
方案研究
应用案例
5G co-construction and sharing
threat analysis
security situation awareness
evidence collection and tracing
scheme research
application case