节点文献

网络安全事件应急响应联动系统研究

Network Security Incident Response Linkage System

【作者】 沈雄军

【导师】 王春枝;

【作者基本信息】 湖北工业大学 , 计算机网络应用, 2009, 硕士

【摘要】 网络安全事件应急响应联动系统的主要目的是协调应急响应组织人力与信息等资源合作应对网络安全事件,目前尚未有广泛接受的模型。因此本文以目前网络安全事件应急响应技术与目前存在的现状为基础,从该事件和状态的发展进程谈起,并分析该应急响应联动的含义、目的与原则,讨论了应急响应联动的体系结构、功能与策略等;提出了应急响应联动系统的初步模型,并以PDCERF方法学的6个阶段为线索用相关的标准和建议充实了该模型;接着,本文给出了建议的系统运行模板和事例说明;最后简要探讨了联动系统其他的关键内容。本文侧重响应的组织与过程,对技术细节并不深究;所提出的联动系统模型并不完美但己经充分考虑了协作响应的关键问题,并着重于适应我国的实际情况,具有一定的可操作性。

【Abstract】 Network Security Emergency Response System to respond to the main purpose is to coordinate emergency response organizations, such as human resources and information co-operation to deal with network security incidents, there are no widely accepted model. Therefore, On the basis of recent technology and organization of incident response, begin with its trend the author brings forward his production about the system. In this paper, there are analysis about the significance, the purpose and the principle of the system and argumentation about its organization, function, running and security strategy, software and some key technology. Then the author puts forward a primary model filled with correlative standards and suggestions with the clue of the six phases of PDCEIZF methodology. Then the’ author shows a recommended running template and some examples of the system. At last, the author talks about other important content.This thesis put its emphasis on the organization and the process of the response, without lots of study on the technology. Although this model is not perfect, it has dealt with most of the key problem on cooperation. Because it is adapted with the fact of our country, it’s exercisable in a certain extent.

【关键词】 安全事件应急响应联动系统PDCERF
【Key words】 Security IncidentIncident ResponseLinkage systemPDCERF
  • 【分类号】TP393.08
  • 【下载频次】163
节点文献中: