首页> 外文会议>Intelligence and Security Informatics; Lecture Notes in Computer Science; 4430 >An Intelligent Agent-Oriented System for Integrating Network Security Devices and Handling Large Amount of Security Events
【24h】

An Intelligent Agent-Oriented System for Integrating Network Security Devices and Handling Large Amount of Security Events

机译:集成网络安全设备并处理大量安全事件的面向智能代理的系统

获取原文
获取原文并翻译 | 示例

摘要

To integrate network security devices to make them act as a battle team and efficiently handle the large amount of security events produced by various network applications, Network Security Intelligent Centralized Management is a basic solution. In this paper, we introduce an intelligent agent-oriented Network Security Intelligent Centralized Management System, and give a description about the system model, mechanism, hierarchy of security events, data flow diagram, filtering and transaction and normalization of security events, clustering and merging algorithm, and correlation algorithm. The experiment shows that the system can significantly reduce false positives and improve the quality of security events. It brings convenience for security administrators to integrate security devices and deal with large security events.
机译:为了集成网络安全设备,使它们充当战斗团队并有效处理各种网络应用程序产生的大量安全事件,网络安全智能集中管理是一种基本解决方案。本文介绍了一种面向智能代理的网络安全智能集中管理系统,并对系统模型,机制,安全事件的层次结构,数据流图,安全事件的过滤和事务处理以及规范化,聚类和合并进行了描述。算法和相关算法。实验表明,该系统可以大大减少误报并提高安全事件的质量。它为安全管理员提供了集成安全设备和处理大型安全事件的便利。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号