摘要
随着技术的发展和社会发展对网络依赖度的增加,网络安全事件发生的频率较高,网络攻击难以及时被发现或预判。网络安全事件关联分析技术不同于传统手段,而是通过关联技术来推测将要发生的网络攻击,使得网络管理人员能够及早制定出有效的防范对策而减少损失,甚至可以在攻击发生前就将其阻止。主要研究网络安全事件关联分析技术并提出未来发展的趋势。
Network security events occur very frequently and the network attacks are difficult to be found in time or predicted. Network security event correlation technology differs from traditional software vulnerabilities through patches, intrusion detection and other means to estab-lish security and defense systems, through the network security event correlation techniques to predict the future of network security incidents will occur, and even be able to take appropriate counter-measures in advance, before the attack will not happen of its blocked. Describes the underlying technologies and methods on network security event correlation technology and proposes future development trends.
关键词
网络安全
事件关联
Network Security
Event Correlation