首页> 外文会议>Annual International Conference on Cloud Technology and Communication Engineering >A Multi-source Alarm Information Fusion Processing Method for Network Attack Situation
【24h】

A Multi-source Alarm Information Fusion Processing Method for Network Attack Situation

机译:一种用于网络攻击情况的多源报警信息融合处理方法

获取原文

摘要

Data fusion technology is one of the key supporting technologies for network security situational awareness.This paper focuses on the research of multi-source alarm information fusion processing method,analyzes the level of network security situation perception data processing,and gives the process of processing data using data fusion technology.It takes the alarm information of network security equipment as the data source,and puts forward the theory of attribute similarity clustering and weighted D-S evidence theory.Source data fusion and vulnerability information association analysis are three ways to integrate multi-source alarm information fusion for network attack situation.This method takes a comprehensive consideration of the alarm information with a number of devices,and filters and fuses the alarm.It can reduce the number of alarm and make the final warning results better reflect the attack situation in the network.
机译:数据融合技术是网络安全态势意识的关键支持技术之一。本文重点介绍了多源报警信息融合处理方法的研究,分析了网络安全局势感知数据处理的水平,并提供了处理数据的过程使用数据融合技术。它将网络安全设备的报警信息作为数据源,并提出了属性相似性聚类和加权DS证据理论的理论。资源数据融合和漏洞信息关联分析是集成多源的三种方法用于网络攻击情况的报警信息融合。这方法全面考虑了许多设备的报警信息,滤波器和熔断器的报警。它可以减少报警的数量,并使最终警告结果更好地反映攻击情况网络。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号