首页|基于数据挖掘的企业局域网安全态势感知方法

基于数据挖掘的企业局域网安全态势感知方法

扫码查看
为提高企业局域网运行的安全性与稳定性,准确感知和应对潜在的网络威胁,开展基于数据挖掘的企业局域网安全态势感知方法研究.首先,采集并预处理企业局域网安全数据.然后,利用数据挖掘算法,设计关联规则挖掘,从安全数据中提取网络态势特征.最后,构建态势评估模型,计算企业局域网安全态势的基本指数,评估当前企业局域网的态势情况,分析可能的威胁来源,确定威胁级别及对应威胁程度,实现安全态势感知.实验结果表明,该方法应用后,感知误报率均低于0.5%,能够准确识别出潜在的安全威胁,从而提高企业的网络安全防护能力.
Enterprise LAN Security Situation Awareness Method Based on Data Mining
In order to improve the security and stability of enterprise LAN operation,and accurately perceive and deal with potential network threats,research on enterprise LAN security situation awareness method based on data mining is carried out.First,the enterprise LAN security data is collected and preprocessed.Then,by using data mining algorithm,we design association rule mining to extract network situation characteristics from security data.Finally,the situation assessment model is constructed to calculate the basic index of the enterprise LAN security situation,perceptively evaluate the current situation of the enterprise LAN,analyze possible threat sources,determine the threat level and corresponding threat degree,and realize the security situation awareness.The experimental results show that after the application of this method,the perceived false positive rate is less than 0.5%,and the potential security threats can be accurately identified,so as to improve the network security protection ability of enterprises.

data miningenterpriselocal area networksecure situation awareness

朱赛华

展开 >

常州博瑞电力自动化设备有限公司,江苏常州 213025

数据挖掘 企业 局域网 安全态势感知

2024

信息与电脑
北京电子控股有限责任公司

信息与电脑

影响因子:1.143
ISSN:1003-9767
年,卷(期):2024.36(4)
  • 8