机构地区: 四川大学计算机学院
出 处: 《电子科技大学学报》 2007年第6期1198-1201,共4页
摘 要: 为有效评估网络信息系统的网络风险,提出了一种新的基于危险理论的风险评估模型(DTREM)。在给出网络活动中自体、非自体、免疫细胞的定义,建立由记忆检测器、成熟检测器、未成熟检测器集合构成的入侵检测子模型后,进一步给出了基于危险理论的网络风险定量计算子模型。利用该模型,可以实时定量地计算出主机和网络当前所面临攻击的各类攻击和总体网络风险强度,理论分析和实验结果均表明,该模型为实时网络安全风险评估提供了一种有效的新途径。 To effectively evaluate the network risk of network information system, a Danger Theory based Network Risk Evaluation Model (DTREM) is proposed. With definitions of self, non-self, and immunocyte, the intrusion detection sub-model is given. DTERM is composed of memory detectors, mature detectors, and immature detectors. Furthermore, the danger theory based network risk evaluation sub-model is given. In the proposed model, the risk of each network attack, including holistic risk of the host and network, can be calculated in real time and quantificationally. Both the theory analysis and experimental results prove that DTERM provides an effective and novel approach for network risk evaluation.
关 键 词: 人工免疫系统 危险理论 网络信息系统 网络风险评估
领 域: [自动化与计算机技术] [自动化与计算机技术]