用户名: 密码: 验证码:
基于本体的自适应智能安全防护体系研究
详细信息    查看全文 | 推荐本文 |
  • 英文篇名:An Ontology-based Framework for Adaptive Intelligent Security Protection System
  • 作者:孙杰 ; 郭运雷
  • 英文作者:Sun Jie;Guo Yunlei;Industrial and Commercial Bank of China Data Center(Beijing);
  • 关键词:安全防护体系 ; 本体 ; 情景感知 ; 漏洞
  • 英文关键词:security protection system;;ontology;;context-aware;;vulnerability
  • 中文刊名:XXDL
  • 英文刊名:China Computer & Communication
  • 机构:中国工商银行数据中心(北京);
  • 出版日期:2019-02-25
  • 出版单位:信息与电脑(理论版)
  • 年:2019
  • 期:No.422
  • 语种:中文;
  • 页:XXDL201904094
  • 页数:4
  • CN:04
  • ISSN:11-2697/TP
  • 分类号:238-241
摘要
笔者提出了基于本体自适应情景感知系统为核心的智能安全防护体系通用框架。通过将新的通用框架应用于资产安全防护中,如命令执行漏洞的自动发现和防护,可实时感知网络安全状况,实现对科技资产漏洞风险的实时评估,并及时发现网络中针对科技资产攻击的异常事件,缩短了阻断响应的时间,提高了防护效率,并降低漏洞攻击的误报率,降低了网络阻塞的风险。
        In this paper, We propose a common intelligent security protection system framework which is based on an ontologybased adaptive context-aware system. We apply the new common framework to the asset security protection, to verify our proposition.In this scenario,our common intelligent security protection system framework can realize automatically discovery and protection of command execution vulnerabilities, perceive the security status of the network and make assessment of the risk of technology asset vulnerabilities and discover the abnormal attack events for the technology asset in the cyberspace in real-time.It can shorten the response time to block the attack, improve the protection efficiency, reduce the false alarm rate of the vulnerability attack and the risk of network congestion.
引文
[1]张瑜,潘小明,曹均阔,等.APT攻击与防御[J].清华大学学报(自然科学版),2017,57(11):1127-1133.
    [2]顾君忠.情景感知计算[J].华东师范大学学报(自然科学版),2009,2009(5):1-20.
    [3]Chandrasekaran B,Josephson J R,Benjamins V R.What are ontologies,and Why Do We Need Them?[J].IEEE Intelligent Systems,1999,14(1):20-26.
    [4]Studer R.Knowledge engineering:Principles and Methods[J].Data&Knowledge Engineering,2008,25(1-2):161-197.
    [5]Hill E F.Jess in Action:Java Rule-Based Systems[M].Greenwich:Manning Publications Co.,2003:263.
    [6]Mowafi Y,Aboutair D,Alaqarbeh T,et al.A Context-aware Adaptive Security Framework for Mobile Applications[C]//International Workshop on Pervasive&Context-aware Middleware,2015:364.
    [7]Kristian F S K.Modelling Security Relevant Context An approach towards Adaptive Security in Volatile Mobile Web Environments[J].2011(2011):1-3.
    [8]Shen H B,Cheng Y.A Context-Aware Semantic-Based Access Control Model for Mobile Web Services[J].Communications in Computer&Information Science,2011(153):132-139.

© 2004-2018 中国地质图书馆版权所有 京ICP备05064691号 京公网安备11010802017129号

地址:北京市海淀区学院路29号 邮编:100083

电话:办公室:(+86 10)66554848;文献借阅、咨询服务、科技查新:66554700