通过对网络信息安全要素机密性、完整性和可用性的分析和量化,定义了网络安全机密性向量、网络安全完整性向量和网络安全可用性向量,建立了层次化网络安全性评估指标体系;然后,在基于正、负理想比较标准基础上,对评估指标元素进行无量纲化灰色处理,并提出了一种定性与定量相结合的多层线性加权的网络安全评估模型;最后,通过举例分析证实了所建立模型的可行性和有效性。
After analyzing and quantifying the network information security elements: confidentiality, integrity and availability, this paper defines a network security confidentiality vector, a network security integrity vector and a network security availability vector, and also Builds a hierarchical network security evaluation index system. Based on the positive and negative ideal comparative standards, the evaluation index elements are processed in a non-dimensional grey way, and a qualitative-quantitative evaluation model with the multilayer linear weight for the network security is put forward. Finally, the feasibility and validity of the model are verified by analyzing some practical examples.