系统仿真学报 ›› 2016, Vol. 28 ›› Issue (5): 1009-1016.

• 仿真建模理论与方法 • 上一篇    下一篇

基于GSCPN模型的网络安全加固措施制定方法

高翔1,2, 刘洋1, 贺筱媛1   

  1. 1.国防大学信息作战与指挥训练教研部,北京 100091;
    2.数学工程与先进计算国家重点实验室,郑州 450002
  • 收稿日期:2014-12-26 修回日期:2016-04-20 发布日期:2020-07-03
  • 作者简介:高翔(1984-), 男, 辽宁大连, 博士, 研究方向为网络信息安全与信息系统建模。
  • 基金资助:
    国家自然科学基金(61403401, 61374179, 61174156, 61273189, 61174035, 71401168);军民共用重大研究计划联合基金(U1435218);全军军事科学研究计划课题(13QJ003-063)

Method for Network Security Reinforcement Based on GSCPN Model

Gao Xiang1,2, Liu Yang1, He Xiaoyuan1   

  1. 1. The Department of Information Operation & Command Training, NDU of PLA, Beijing 100091, China;
    2. State Key Laboratory of Mathematical Engineering and Advanced Computing, Zhengzhou 450002, China
  • Received:2014-12-26 Revised:2016-04-20 Published:2020-07-03

摘要: 为了从整体上提高网络安全性,提出了一种基于广义随机着色Petri网模型的网络安全加固措施制定方法。该方法引入主机节点利用率指数和主机节点关键度等概念,通过计算主机节点的关键度对网络中需要修补的脆弱节点进行排序,在此基础上根据最大节点关键度优先的原则逐步消除网络中存在的脆弱性。针对网络实例的分析进一步验证了所提出方法的有效性。与传统方法相比,具有可操作性强的特点,可以指导网络管理人员制定安全加固措施对目标网络进行安全加固

关键词: 安全评估, GSCPN模型, 建模, 安全加固

Abstract: In order to improve the security of networks in whole, a method of making strategies for the network security reinforcement based on Generalized Stochastic Colored Petri Net was proposed. The concepts of host node utilization index and host node key degree were introduced, which enabled the vulnerable nodes that needed repairing sorted by the value of host node key degree. On this basis, security level of the target network was increased by the reinforcement according to the principle of maximum node key degree first. The network instance further validates that the proposed method for network security reinforcement is effective, and the operability is better than traditional methods.

Key words: security assessment, GSCPN, modeling, security reinforcement

中图分类号: