借鉴人类免疫系统的研究成果,建立了一个基于免疫规则的网络自适应系统模型.该模型通过引入系统脆弱等级评定变量,并根据系统当前安全态势与系统性能状态对网络安全策略进行动态调整,以实现网络的自适应性安全.在对安全风险评估部件、安全等级调整部件以及安全操作执行部件进行功能阐述的基础上,重点对安全风险评估部件的工作流程进行了重新设计.分析表明,该模型系统具有分布性、自学习性和自适应性的特性.
Through the research on the achievements of human immune system, a model of adaptive network security based on immune theory has been given. The model introduces the evaluation of system vulnerability level, and it can dynamically adapt its security policy according to the current security situation and performance of the system in order to achieve the network adaptive security. After the explanation of the functions of security risk assessment component, security level adjustment component and security operation execution component, the redesign of security risk assessment component is emphasized. This model is characterized by distributing, self-studying and adaptability.