《電子技術應用》
您所在的位置:首頁 > 通信与网络 > 设计应用 > 一种面向软件定义网络的安全态势感知方法
一种面向软件定义网络的安全态势感知方法
2020年信息技术与网络安全第4期
郑忠斌1,黎聪2,王朝栋1
(1.工业互联网创新中心(上海)有限公司,上海 201303;2.同济大学,上海 200092)
摘要: 随着互联网基础设施的飞速发展和新应用的不断涌现,拒绝服务攻击作为网络层攻击的一个典例始终是安全人员重点防范的对象,而新兴的SDN网络在控制层和基础设施层同样也有受到拒绝服务攻击的风险。在现有的安全技术中,网络安全态势感知技术独特的优势使之能同时有效地用于传统网络与SDN网络。研究了应用于网络安全态势感知的相关算法,并实现了一个基于JDL多传感器数据融合的网络安全态势感知模型,并将其应用于SDN网络中对拒绝服务攻击的感知和评估。实验结果显示与单纯使用IDS的方法相比,融合决策的误报率和漏报率均有所下降,且输出的态势值具有一定的准确度,符合系统安全管理人员直观评估的结果。
中圖分類號:TP393
文獻標識碼:A
DOI: 10.19358/j.issn.2096-5133.2020.04.002
引用格式:鄭忠斌,黎聰,王朝棟.一種面向軟件定義網絡的安全態勢感知方法[J].信息技術與網絡安全,2020,39(5):5-12.
A security situation awareness method for software defined network
Zheng Zhongbin1,Li Cong2,Wang Chaodong1
(1.Industrial Internet Innovation Center (Shanghai) Co.,Ltd.,Shanghai 201303,China;2.Tongji University,Shanghai 200092,China)
Abstract: With the rapid development of Internet infrastructure and the constant emergence of new applications,denialofservice attack as a typical example of network layer attack is always the object that security personnel focus on preventing.Emerging as it is,SDN network also risks of getting denialofservice attack in its control layer and infrastructure layer.Among the current security technologies,the unique advantages of Network Security Situational Awareness technology have rendered NSSA competitive in applying both to traditional network model and SDN.Hence this paper studies the application of algorithms in the network security situational awareness,and implements a JDLmultisensordatafusionbased network security situational awareness model,applied to SDN network perception and evaluation of Denial of Service attacks.The experimental results show that the false alarm rate (negative positive) and nonresponse rate (positive negative) of fusion decision have both remarkably decreased compared with the IDS method,and the situational value of the output is of certain accuracy,which is in line with the intuitive evaluation results of system administrator.
Key words : network security;situational awareness;software defined network;data fusion;denial of service attacks

0    引言

隨著互聯網基礎設施的飛速發展和新應用的不斷涌現,網絡在規模和拓撲上都日趨擴大化、復雜化,各種層出不窮、更新換代的網絡攻擊給安全管理者帶來了巨大的挑戰。在諸多網絡攻擊手段中,拒絕服務攻擊作為歷史最為久遠、造成資產損失最為嚴重的攻擊手段之一,始終是政企以及軍方網絡安全管理人員重點防范的對象。自1999年第一次分布式拒絕服務攻擊(Distributed Denial of Service,DDoS)出現以來,DDoS攻擊經歷了探索期、組織攻擊期、國家網絡戰期幾個階段,直至今天已成為高度普及化、成熟化、組織化的攻擊方式。從2008年至今,智能聯網終端設備的全面普及產生的大量的僵尸網絡更是為不法分子開展DDoS攻擊提供了便利。2018年3月出現的MemcacheUDP以TB級的帶寬攻擊了Github,引發了網絡安全從業者的警惕,意味著目前的DDoS攻擊制造出TB乃至PB級的攻擊已不是難事。鑒于目前的服務器的帶寬壓力承載量大多不足以應對此種級別的攻擊,一次精心預謀的DDoS攻擊將不僅會造成網絡資產損失,也會造成企業乃至國家政府機構的職能癱瘓,產生的后果難以估量。




本文詳細內容請下載:http://m.tom3567.com/resource/share/2000003198





作者信息:

鄭忠斌1,黎聰2,王朝棟1

(1.工業互聯網創新中心(上海)有限公司,上海 201303;2.同濟大學,上海 200092)


此內容為AET網站原創,未經授權禁止轉載。
主站蜘蛛池模板: 欧美在线一区二区三区四区| 国产精品成人久久电影| 欧美精品七区| 日本一区二区三区四区在线观看| 国产精品美女久久久免费| 久久99热精品| 久久精品视频一| 久久天堂国产精品| 蜜桃视频一区二区在线观看 | 99爱精品视频| 国产精品综合不卡av| 久久久久久亚洲精品不卡| 日本高清视频一区| 亚洲 中文字幕 日韩 无码| 亚洲一区三区在线观看| 亚洲午夜精品一区二区| 日韩中文字幕在线免费观看| 色天天综合狠狠色| 欧美久久综合性欧美| 欧美精品久久久久久久自慰| 欧美日韩亚洲第一| 久久亚洲精品成人| 国产日韩在线精品av| 国产精品国内视频| 无码人妻aⅴ一区二区三区日本| 视频一区亚洲| 久久天天躁狠狠躁夜夜躁2014| 精品日韩欧美| 国产精品一区二区你懂得 | 精品91免费| 国产精品乱码一区二区三区| 99亚洲国产精品| 日韩视频在线免费观看| 欧美国产日韩在线播放| 国产精品视频永久免费播放| 99在线视频首页| 日本久久久久亚洲中字幕| 久久99精品国产99久久| 99久久精品免费看国产四区| 午夜精品一区二区三区在线| 欧美视频在线观看网站|