A Quantitative Evaluation Model for Network Security

  • Authors:
  • Dapeng Man;Wu Yang;Yongtian Yang;Wei Wang;Lejun Zhang

  • Affiliations:
  • -;-;-;-;-

  • Venue:
  • CIS '07 Proceedings of the 2007 International Conference on Computational Intelligence and Security
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

The existing network security assessment models have the problems of inadequate capacity of quantitative analysis and lacking for vulnerabilities correlation. To address these problems, a hierarchical network security evaluation model is proposed. The network is divided into vulnerability level, service level, equipment level and network level. The model uses attack graph to correlate the network vulnerabilities, and then calculates the probabilities of successfully exploiting the vulnerabilities. On this basis, the quantitative risks of each level are calculated. Since this model much more accords with the features of network structure, it is an effectively guidance for the network administrators to develop and improve the network security policies.