首页> 外文期刊>Computers & Security >A foresight model for intrusion response management
【24h】

A foresight model for intrusion response management

机译:入侵响应管理的预见模型

获取原文
获取原文并翻译 | 示例
       

摘要

Intrusion response system (IRS) is one of the most important components in the network security solution that selects appropriate countermeasures to handle the intrusion alerts. Recently, many techniques have been proposed in designing an automated IRS. However, one of the big challenges in intrusion response system which is not considered in the literature is the lack of standardization for intrusion responses. So, this paper investigates how to model and manage the intrusion responses. We present a multilevel response model that provides a high-level view of intrusion responses. We also propose a foresight model to estimate the response cost by considering IDS alerts, network dependencies, attack damage, response impact, and probability of potential attacks. Furthermore, a data model is defined to represent and exchange the intrusion response messages with a standard format.
机译:入侵响应系统(IRS)是网络安全解决方案中最重要的组件之一,它选择适当的对策来处理入侵警报。最近,在设计自动IRS时提出了许多技术。然而,入侵响应系统的一大挑战是缺乏标准化的入侵响应,这在文献中没有被考虑。因此,本文研究了如何对入侵响应进行建模和管理。我们提出了一个多层次的响应模型,它提供了入侵响应的高级视图。我们还提出了一种前瞻性模型,通过考虑IDS警报,网络依赖性,攻击破坏,响应影响以及潜在攻击的可能性来估计响应成本。此外,定义了一个数据模型来表示和交换标准格式的入侵响应消息。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号