[1]高 薇,许 浩,宁玉文,等.基于安全态势感知平台的高校网络SOC 研究—以第四军医大学为例[J].计算机技术与发展,2018,28(01):150-154.[doi:10.3969/ j. issn.1673-629X.2018.01.032]
GAO Wei,XU Hao,NING Yu-wen,et al.Research on Campus Network Security Operation Center Based on Security Situational Awareness Platform—Taking the Fourth Military Medical University as an Example[J].Computer Technology and Development,2018,28(01):150-154.[doi:10.3969/ j. issn.1673-629X.2018.01.032]
点击复制
基于安全态势感知平台的高校网络SOC 研究—以第四军医大学为例(
)
《计算机技术与发展》[ISSN:1006-6977/CN:61-1281/TN]
- 卷:
-
28
- 期数:
-
2018年01期
- 页码:
-
150-154
- 栏目:
-
安全与防范
- 出版日期:
-
2018-01-10
文章信息/Info
- Title:
-
Research on Campus Network Security Operation Center Based on Security Situational Awareness Platform—Taking the Fourth Military Medical University as an Example
- 文章编号:
-
1673-629X(2018)01-0150-05
- 作者:
-
高 薇; 许 浩; 宁玉文; 高东怀
-
第四军医大学 信息管理中心,陕西 西安 710032
- Author(s):
-
GAO Wei; XU Hao; NING Yu-wen; GAO Dong-huai
-
Information Management Center,the Fourth Military Medical University,Xi’an 710032,China
-
- 关键词:
-
安全态势感知; 高校校园网; 安全运营中心; 网络安全管理
- Keywords:
-
security situation awareness; campus network; security operation center; network security management
- 分类号:
-
G434
- DOI:
-
10.3969/ j. issn.1673-629X.2018.01.032
- 文献标志码:
-
A
- 摘要:
-
在日益严峻的网络安全形势下,为了改进高校网络安全管理工作,建立了统一的 SOC 和安全管理机制。 调查了陕西省高校网络安全管理工作的新特点与存在的问题,借鉴企业 SOC 的机制和 WPDRRC 模型,以第四军医大学为研究个案,对其 SOC 机制进行重新设计实践。 在 WPDRRC 模型的基础上提出了由预警、保护、检测、响应、恢复和改进六个环节,组织架构、技术体系和管理流程三个要素组成的 WPDRRI 模型。 以第四军医大学校园网 SOC 为例,构建了决策、管理、运营和应用4 个层次的 SOC 组织体系,按照划分安全域的思想设计了校园网整体的安全防护架构,探索了校园网安全态势感知平台的日常和异常网络安全运维流程。 结果表明,WPDRRI 模型符合高校网络安全管理实际,可以用于指导高校网络 SOC建设
- Abstract:
-
Under the increasingly serious network security situation,we establish an unified SOC and security management mechanism in order to improve the network security management in higher schools. According to investigation about new characteristics and problems of safety management work in Shaanxi Province higher schools,taking the Fourth Military Medical University as a case,we redesign and practice the SOC management plan of the higher schools,which referred to enterprise SOC mechanism and WPDRRC model. Based on the WPDRRC,a new WPDRRI model,which is composed of the six links by warning,protection,detection,response,and three elements by organization structure,technology system and management process,is proposed. Taking campus network SOC from the Fourth Military Medical University as an example,we build four levels SOC system including decision-making,management,operation and application. In accordance with the partition of network security domain,the overall security architecture of the campus network is designed,and the daily and abnormal network security service process based on the security situation awareness platform of network platform is explored. The results show that WPDRRI model is fit for actual condition of network safety management in higher schools,which can be used to guide the construction of university network SOC.
更新日期/Last Update:
2018-03-13