论文标题
网络安全分析的复合指标
Composite Metrics for Network Security Analysis
论文作者
论文摘要
安全指标以定性和定量方式呈现系统或网络的安全级别。通常,安全指标用于评估系统的安全级别并实现安全目标。安全分析有很多安全指标,但是没有基于网络可及性信息的安全指标的系统分类。为了解决这个问题,我们建议基于网络可及性信息对现有安全指标进行系统分类。主要是,我们将安全指标分类为基于主机和基于网络的指标。将基于主机的指标分类为“无概率”和“具有概率”的指标,而基于网络的指标被分类为“基于路径”和“基于路径”和“基于非路径”。最后,我们介绍并描述了一种通过示例网络进行示例网络分类的方法来确定一个新的系统,并描述了一种使用示例攻击模型来开发复合安全度量的方法。
Security metrics present the security level of a system or a network in both qualitative and quantitative ways. In general, security metrics are used to assess the security level of a system and to achieve security goals. There are a lot of security metrics for security analysis, but there is no systematic classification of security metrics that are based on network reachability information. To address this, we propose a systematic classification of existing security metrics based on network reachability information. Mainly, we classify the security metrics into host-based and network-based metrics. The host-based metrics are classified into metrics ``without probability" and "with probability", while the network-based metrics are classified into "path-based" and "non-path based". Finally, we present and describe an approach to develop composite security metrics and it's calculations using a Hierarchical Attack Representation Model (HARM) via an example network. Our novel classification of security metrics provides a new methodology to assess the security of a system.