A Novel Method of Network Security Situation Assessment Based on Evidential Network.

Xiang Li,Xinyang Deng,Wen Jiang
DOI: https://doi.org/10.1007/978-3-030-62223-7_46
2020-01-01
Abstract:Network security situation awareness is a new type of network security technology. It evaluates the network security situation in real time from a macro perspective. Also it can predict the trend of the development of the network security situation, providing a basis for the decision analysis of administrators. It is difficult to obtain complete and accurate information in network security situation assessment by using evidential network. So we introduce an evidential network based on Bayesian network to solve that problem. Firstly, transform the parent node information and inference rules into plausibility function so as to be compatible with imperfect and inaccurate information. Secondly, we use the full probability formula of Bayesian network as reference to make similar reasoning under the framework of evidence theory. Then transform the inference result to BPA form by using the minimum specificity algorithm, and obtain the final result by projection. Finally, an example of network security situation assessment is given to illustrate the rationality and effectiveness of the method.
What problem does this paper attempt to address?