首页> 外文会议>IFIP TC 12 international conference on intelligent information processing >Case Retrieval for Network Security Emergency Response Based on Description Logic
【24h】

Case Retrieval for Network Security Emergency Response Based on Description Logic

机译:基于描述逻辑的网络安全应急响应案例检索

获取原文

摘要

Network security emergency response (NSER) is an important topic in information security. Nowadays, a large number of NSER systems and tools are developed, which can effectively detect part of security incidents and provide general best-practice guidelines for handling some type of security incidents, but not give a reasonable, fast, effective processing method for every security incidents in actual environment. An intelligent method based on case-based reasoning (CBR) and description logic (DL) is proposed for NSER. Firstly, a case base for NSER is organized in such a way that domain knowledge of NSER is described by the DL ALCO(D). Secondly, based on refinement operator and refinement graph in DLs, an algorithm for measuring the similarity of ALCO(D) concepts is designed and used for retrieving cases from the case base. It is demonstrated that our method can reuse past experiences on security incidents to generate response automatically.
机译:网络安全紧急响应(NSER)是信息安全中的重要主题。如今,已开发出大量的NSER系统和工具,它们可以有效地检测部分安全事件并提供处理某些类型的安全事件的通用最佳实践准则,但不能为每种安全性提供合理,快速,有效的处理方法实际环境中的事件。提出了一种基于案例推理(CBR)和描述逻辑(DL)的智能方法。首先,以这样一种方式来组织NSER的案例库:用DL ALCO(D)描述NSER的领域知识。其次,基于DL中的细化算子和细化图,设计了一种用于度量ALCO(D)概念相似度的算法,并将其用于从案例库中检索案例。证明了我们的方法可以重用过去在安全事件上的经验来自动生成响应。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号