作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2009, Vol. 35 ›› Issue (1): 140-143. doi: 10.3969/j.issn.1000-3428.2009.01.048

• 安全技术 • 上一篇    下一篇

一种基于图聚类的安全态势评估方法

徐南南1,3,连一峰1,2,3,韦 勇4   

  1. (1. 中国科学院研究生院信息安全国家重点实验室,北京 100049;2. 中国科学院软件研究所,北京 100190;3. 中国科学院研究生院,北京 100080;4. 中国科学技术大学电子工程与信息科学系,合肥 230027)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2009-01-05 发布日期:2009-01-05

Method of Security Situation Assessment Based on Graph Clustering

XU Nan-nan1,3, LIAN Yi-feng1,2,3, WEI Yong4   

  1. (1. State Key Laboratory of Information Security, Graduate University of Chinese Academy of Sciences, Beijing 100049; 2. Institute of Software, Chinese Academy of Sciences, Beijing 100190; 3. Graduate University of Chinese Academy of Sciences, Beijing 100080;4. Department of Electronic Engineering and Information Science, University of Science and Technology of China, Hefei 230027)
  • Received:1900-01-01 Revised:1900-01-01 Online:2009-01-05 Published:2009-01-05

摘要: 分析并比较现有网络安全态势评估方法,从网络拓扑结构出发,引入图论算法和数据挖掘的聚类方法,提出一种针对分布式系统的安全态势评估方法。利用图聚类算法生成分布式系统网络连通图的聚类结果,计算拓扑完整性参考值,作为衡量分布式系统拓扑完整程度的指标,进行安全态势的量化分析。根据该方法实现低人为干预的安全态势评估原型系统,使用网络仿真工具验证了算法正确性和适用性。

关键词: 安全态势评估, 拓扑完整性参考值, 连通图, 聚类

Abstract: This paper analyzes and compares several typical existing methods of security situational assessment, and proposes a brand new way of assessing the security situation of distributed systems based on network topology, which incorporates both graph algorithms and a clustering algorithm of data mining. Clustering result of the connected graph corresponding to the distributed system is generated by graph clustering algorithm to calculate the integrity reference as a measure of the degree of integrity of the distributed system topology, which is used for quantitative situation assessment. This method achieves less artificial interference and its correctness and applicability are verified by simulated experiments with the network simulation tool.

Key words: security situation assessment, topology integrity reference value, connected graph, clustering

中图分类号: