Ontology Based Approach for Perception of Network Security State

被引:0
作者
Bhandari, Pardeep [1 ]
Gujral, Manpreet Singh [2 ]
机构
[1] Doaba Coll, Jalandhar, Punjab, India
[2] Punjabi Univ, Patiala, Punjab, India
来源
2014 RECENT ADVANCES IN ENGINEERING AND COMPUTATIONAL SCIENCES (RAECS) | 2014年
关键词
Network Security Status; Ontology; Network Situational awareness; Taxonomy; ATTACKS;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
This paper presents an ontological approach to perceive the current security status of the network. Computer network is a dynamic entity whose state changes with the introduction of new services, installation of new network operating system, and addition of new hardware components, creation of new user roles and by attacks from various actors instigated by aggressors. Various security mechanisms employed in the network does not give the complete picture of security of complete network. In this paper we have proposed taxonomy and ontology which may be used to infer impact of various events happening in the network on security status of the network. Vulnerability, Network and Attack are the main taxonomy classes in the ontology. Vulnerability class describes various types of vulnerabilities in the network which may in hardware components like storage devices, computing devices or networks devices. Attack class has many subclasses like Actor class which is entity executing the attack, Goal class describes goal of the attack, Attack mechanism class defines attack methodology, Scope class describes size and utility of the target, Automation level describes the automation level of the attack Evaluation of security status of the network is required for network security situational awareness. Network class has network operating system, users, roles, hardware components and services as its subclasses. Based on this taxonomy ontology has been developed to perceive network security status. Finally a framework, which uses this ontology as knowledgebase has been proposed.
引用
收藏
页数:6
相关论文
共 50 条
[41]   Ontology mapping-based search with multidimensional similarity and Bayesian network [J].
Jung, Min ;
Jun, Hong-Bae ;
Kim, Kyun-Woo ;
Suh, Hyo-Won .
INTERNATIONAL JOURNAL OF ADVANCED MANUFACTURING TECHNOLOGY, 2010, 48 (1-4) :367-382
[42]   Security Data Mining in an Ontology for Vulnerability Management [J].
Wang, Ju An ;
Guo, Minzhe .
2009 INTERNATIONAL JOINT CONFERENCE ON BIOINFORMATICS, SYSTEMS BIOLOGY AND INTELLIGENT COMPUTING, PROCEEDINGS, 2009, :597-603
[43]   Ontology mapping-based search with multidimensional similarity and Bayesian network [J].
Min Jung ;
Hong-Bae Jun ;
Kyun-Woo Kim ;
Hyo-Won Suh .
The International Journal of Advanced Manufacturing Technology, 2010, 48 :367-382
[44]   Toward a Flexible Ontology-Based Policy Approach for Network Operations Using the KAoS Framework [J].
Uszok, Andrzej ;
Bradshaw, Jeffrey M. ;
Lott, James ;
Johnson, Matthew ;
Breedy, Maggie ;
Vignati, Michael ;
Whittaker, Keith ;
Jakubowski, Kim ;
Bowcock, Jeffrey ;
Apgard, Daniel .
2011 - MILCOM 2011 MILITARY COMMUNICATIONS CONFERENCE, 2011, :1108-1114
[45]   User Perception of Ontology-Based Explanations of AI Models [J].
Agafonov, Anton ;
Ponomarev, Andrew ;
Smirnov, Alexander .
COMPUTER-HUMAN INTERACTION RESEARCH AND APPLICATIONS, CHIRA 2024, PT II, 2025, 2371 :396-414
[46]   FlowStats: An Ontology Based Network Management Tool [J].
Kyriakopoulos, Konstantinos G. ;
Parish, David J. ;
Whitley, John N. .
2015 SECOND INTERNATIONAL CONFERENCE ON COMPUTING TECHNOLOGY AND INFORMATION MANAGEMENT (ICCTIM), 2015, :13-18
[47]   A Network and Repository for Online Laboratory, based on Ontology [J].
Saliah-Hassane, Hamadou ;
Correia, Raul Cordeiro ;
Fonseca, Jose Manuel .
2013 IEEE GLOBAL ENGINEERING EDUCATION CONFERENCE (EDUCON), 2013, :1177-1189
[48]   An ontology-based approach to the analysis of the acid-base state of patients at operative measures [J].
Tianxing, Man ;
Lushnov, Mikhail ;
Ignatov, Dmitry I. ;
Shichkina, Yulia Alexandrovna ;
Zhukova, Natalia Alexandrovna ;
Vodyaho, Alexander Ivanovich .
PEERJ COMPUTER SCIENCE, 2021, 7
[49]   Ontology driven role based social network [J].
Mukta, Md. Saddam Hossain ;
Hasan, Khandaker Tabin ;
Hossain, Md. Sazzad .
2012 INTERNATIONAL CONFERENCE ON INFORMATICS, ELECTRONICS & VISION (ICIEV), 2012, :908-913
[50]   Network security situation awareness forecasting based on statistical approach and neural networks [J].
Sokol, Pavol ;
Stana, Richard ;
Gajdos, Andrej ;
Pekarcik, Patrik .
LOGIC JOURNAL OF THE IGPL, 2023, 31 (02) :352-374