当前安全分析算法未考虑管理员对自身网络设备的重要性评定,及其在此评定基础上的防护行为对网络安全状况的影响,针对该问题提出了一种基于随机博弈模型的网络安全量化评估算法NEAG。利用管理员对各网络设备的重要性评定定义博弈参数,建立网络安全随机博弈模型,对该模型进行Nash均衡分析,得到攻防双方的Nash策略,获得网络处于各状态的概率,从而分析出网络安全量化评估结果。通过实例运行表明NEAG算法能够给出网络安全量化评估值,以及管理员面对攻击时的Nash策略,依此指导管理员的防范工作。
A quantitative network security evaluation algorithm based on stochastic game model--NEAG is proposed to solve the problem of that current network evaluation algorithms ignore the administrator' s assessment on network devices' importance, as well as the influence the defending means exerting on network security state on the basis of that assessment. Furthermore, such assessment is used to define gaming pa- rameters and the stochastic game model of network security is built up. Nash equilibrium policies for attacker and defender can be obtained through the Nash equilibrium analysis on the game model ,the probability of the network in each state can be calculated, and the quantitative network security assessment outcomes can be studied. Experiments show that NEAG can work out the evaluation value of the quantitative network security and provide Nash strategies for the administrator against attacks, as the guideline for the defender.