Dissertation > Excellent graduate degree dissertation topics show

Research of Self-decision System in Intelligent Security Defense Software

Author: ShenLiuQing
Tutor: WangJinDong
School: PLA Information Engineering University
Course: Military Equipment
Keywords: Intelligent Security Defense Software Self-decision System PolicyDecision-making Network Security Situation Awareness
CLC: TP393.08
Type: Master's thesis
Year: 2010
Downloads: 21
Quote: 0
Read: Download Dissertation

Abstract


With the development of information technology and penetration of network applicationinto people’s life, network information security becomes a focus. At the same time, the attacktechnology and means are renewing all the time, and the attack frequency is increasing, whichcauses more and more loss for the network users. So, how to protect the network securityeffectively and economically is the very problem needs to be dealt with. However, the existingsecurity defense software has many limitations, such as static structure, simplex function, weakdefense ability, lack of self-adaptation, and so on. It can’t satisfy the need of network securitydevelopment. To improve this situation, intelligent security defense software should beresearched and exploited.This paper firstly introduces the framework and the principle of an intelligent securitydefense software (ISDS), and designed the extended ISDS system model. Then, ISDS’s keyintelligent module—self-decision system is deeply researched. A hiberarchy self-decision systemis designed, and its realization mechanism is put forward. The detailed work is shown asfollowing:a) In allusion to the use of ISDS in distributed large-scale network, its system model isextended into two parts: Security Management Centre and Security Defense Entity. The extendedsystem model includes the security defense for different levels of network, reduces the systemload of defense nodes (such as terminal computers), and provides the security management forthe whole network.b) Considering the characteristic of ISDS’s extended system model, a hiberarchyself-decision system is designed, including bottom decision level, middle decision level and highdecision level. The very system is free for extending and can satisfy the decision needs ofdifferent levels, purposes and granularities.c) The framework, working principle of self-decision system’s bottom and middle decisionlevels are designed, together with the work mode of Sense Component, which takes charge ofinformation collection. Since the bottom decision level is simple, the middle decision level islucubrated. And a policy decision-making algorithm based on generalized weighted distance isproposed for the middle level.d) The self-decision system’s high decision level is designed in detail. A network securitysituation evaluation model based on four elements is put forward, together with a networksecurity situation prediction algorithm. Furthermore, the decision-making mechanism based onthe level of security situation is introduced. e) An prototype system is realized based on the former research, which validates thefeasibility of the design and realization methods of ISDS self-decision system.

Related Dissertations

  1. Network Security OLAP analysis in query optimization technology design and implementation,TP393.08
  2. Research and Implementation of Stream Cube Construction Techniques for OLAP Analysis of Network Security Incidents,TP393.08
  3. An Intelligentized Method of Network Security Situation Assessment,TP393.08
  4. Multi-source Heterogeneous Security Data Aggregation Based on Ontology,TP309.2
  5. The Research of Malware Detection Technology Based on Active Mode,TP393.08
  6. Topology Measurement and Security Analysis on Gnutella and eMule Network,TP393.08
  7. Implementation and Research of Illegal Websites Detection System Based on Comparison Methods,TP393.08
  8. The Research on Intrusion Detection System Based on Machine Learning,TP393.08
  9. Design and Implementation of DDoS Defense System Based on Flow Cleaning,TP393.08
  10. Firewall and three switch - based campus network security policy research,TP393.08
  11. Research on Credential Chain Discovery Mechanism Based on Improved Role-based Trust Management Language,TP393.08
  12. The Study of Intelligent Intrusion Detection System Based on Neural Network in Linux,TP393.08
  13. Petri net -based network intrusion detection system Research and Implementation,TP393.08
  14. Zhengzhou, China Unicom office automation network security protection Strategy,TP393.08
  15. Research and Implementation of BLP Based Network Access Control Mechanism on Virtualization Platform,TP393.08
  16. PDM systems -oriented research and implementation of access control,TP393.08
  17. Multi-plane based inter-domain routing security monitoring technology research,TP393.08
  18. Mechanisms based on trust metrics Research and Implementation of Intrusion Detection System,TP393.08
  19. Based on the improved LSM Linux Intrusion Detection System,TP393.08
  20. HTTP digest authentication mechanism based on SIP Communication System,TP393.08
  21. Trust based on social networks and reputation mechanisms trust model Multi-Agent Systems,TP393.08

CLC: > Industrial Technology > Automation technology,computer technology > Computing technology,computer technology > Computer applications > Computer network > General issues > Computer Network Security
© 2012 www.DissertationTopic.Net  Mobile