网络安全态势是指某时刻整个系统所处的安全运行状态,网络安全态势评估是安全领域的研究热点之一。文中以能够准确把握一个网络系统的安全态势为目标,设计了一种基于灰色理论的层次化网络安全态势评估方法。该方法利用灰色关联分析法对网络中的攻击要素进行关联,进而在服务、主机、网络等3个层次上综合运用统计技术和专家系统给出的权重来完成相应的态势信息的融合。基于Honeynet数据集的仿真实验结果表明,使用文中设计的方法能够有效而准确地得出网络的总体安全态势。
Network security situation means the safe running-state of the entire network,and the research on network security situation is one of the hot topics in security field.In order to accurately grasp a network system's security situation,designs a hierarchical network security situation evaluation method based on the grey theory.This method relates attack factors in the network by utilizing the grey incidence analysis;obtains the corresponding situation information by using both of the weightiness given by expert system and the statistical technology on the three-layer of services,hosts and networks.The result of simulation experiment based on the Honeynet Data Set illustrates that the whole network security situation can be efficiently and exactly obtained by this method.