Study on Evaluation for Security Situation of Networked Systems

Xiuzhen Chen,Qinghua Zheng,Xiaohong Guan,Chenguang Lin
DOI: https://doi.org/10.3321/j.issn:0253-987X.2004.04.019
2004-01-01
Abstract:Aiming at the deficiency that is unable to provide useful security situation information encountered in the cur2 rent security evaluation systems , a hierarchical and quantitative model , which is used to evaluate security situation of net2 worked systems , and its corresponding computation method are proposed based on the importance of service , host , and the structure of the network system. This model adopts the evaluation policy from bottom to top and from local to global , calculates the risk indexes of service , host and whole network system by weighting the importance of service and host based on the analysis of attack frequency and its severity , and further evaluates their security situation. Experiments on the HoneyNet dataset show that this system can evaluate the security situation in three levels : service , host and local area network system. It provides system administrators with system intuitive security situation curve and releases them from the exhausting task of alert analysis.
What problem does this paper attempt to address?