Study and Implementation of United Platform of Network Security Management

SHI Jian,GUO Shan-qing,XIE Li
DOI: https://doi.org/10.3969/j.issn.1001-3695.2006.09.029
2006-01-01
Abstract:As the wildly use of heterogeneous security devices(e.g.firewalls,IDS's etc.) generates huge amounts of unreliable security events,which are difficult to manage,united platform of network security management is proposed.Using risk assessment and alerts correlation,the platform can analyze the risk of network in real-time,and reduce false positive ratio and false negative ratio effectively.After introducing the framework of the platform and functions of each module, the implementation of event pretreatment,real-time risk assessment and alert correlation is discussed.
What problem does this paper attempt to address?