摘要
针对多源网络安全事件评估不一致造成的漏警率较高问题,本文提出了一种基于加权均值的评估算法,通过模糊聚类方法对多源安全事件融合,通过加权均值算法得到多源安全事件的网络安全评估指标函数,利用指标函数并根据评估准则对当前网络安全状况进行准确评估。实验证明,这种方法能够有效融合多源安全事件并准确报警。
Against higher leakage alarm rate caused by inconsistent assessment for multiple source network security event,this paper puts forward an evaluation algorithm based on weighted mean,fusion multi-source security incident through the fuzzy clustering method,gets the network security evaluation indicator function for multi-source security incidents by the weighted mean algorithm,and uses the indicator function based on the evaluation criteria to assess the current network security state accurately.Experiments show that the method is effective to fusion multi-source security incident and accurate alarm.
出处
《南阳理工学院学报》
2011年第6期31-34,共4页
Journal of Nanyang Institute of Technology
关键词
安全事件
模糊聚类
加权均值
security events
fuzzy clustering
weighted mean