网络安全态势感知(NSSA)是目前网络安全领域的热点研究内容,开展NSSA的研究,对提高网络安全水平有着重要的意义。提出了一个基于多传感器融合的网络安全态势感知模型,利用支持向量机作为融合引擎,融合来自异质多传感器的数据,并结合特征约简算法,提高了融合的实时性。在此基础上,引入态势生成算法,生成安全态势,并利用安全态势评价指标对量化感知进行了评价。仿真实验表明提出的模型和方法是可行的和有效的。
Network security situation awareness is a hot research spot in the area of network security and it is of significance for improving the security level of network. A network security situation awareness model was proposed based on multi-sensor data fusion and this model employed support vector machine as its fusion engine to fuse the data acquired from heterogeneous sensors in combination with the feature reduction method which improved the real-time nature of the fusion engine. A generation algorithm was introduced to obtain the network security situation according to the fusion output. And several evaluating indicators were put forward to evaluate the awareness ability of the situation generation method. The model and the approach are proved to be feasible and effective through a series of simulation experiments.