Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network

Correlation analysis engine which correlate isolated security event as a chain to find out the real threat from a large number of false alarms or low level ones,is a key module of security operations centre(SOC).The traditional correlation analysis mechanism is divided into two types:state machine a...

Full description

Saved in:
Bibliographic Details
Main Authors: Ning Fan, Guoshui Shi, Jun Shen, Huamin Jin
Format: Article
Language:zho
Published: Beijing Xintong Media Co., Ltd 2013-10-01
Series:Dianxin kexue
Subjects:
Online Access:http://www.telecomsci.com/zh/article/doi/10.3969/j.issn.1000-0801.2013.10.029/
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841529230600437760
author Ning Fan
Guoshui Shi
Jun Shen
Huamin Jin
author_facet Ning Fan
Guoshui Shi
Jun Shen
Huamin Jin
author_sort Ning Fan
collection DOAJ
description Correlation analysis engine which correlate isolated security event as a chain to find out the real threat from a large number of false alarms or low level ones,is a key module of security operations centre(SOC).The traditional correlation analysis mechanism is divided into two types:state machine and inference-engine.For poor precision and low efficiency,they don't adapt telecom network application.A new correlation analysis mechanism based on consecutive state by inference-engine was presented,which executed efficiently and accurately,to solve the problems of correlation analysis engine applied in telecom network.
format Article
id doaj-art-0bef8ac55e9344ed9e590d249168745e
institution Kabale University
issn 1000-0801
language zho
publishDate 2013-10-01
publisher Beijing Xintong Media Co., Ltd
record_format Article
series Dianxin kexue
spelling doaj-art-0bef8ac55e9344ed9e590d249168745e2025-01-15T03:21:39ZzhoBeijing Xintong Media Co., LtdDianxin kexue1000-08012013-10-012916817259626330Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication NetworkNing FanGuoshui ShiJun ShenHuamin JinCorrelation analysis engine which correlate isolated security event as a chain to find out the real threat from a large number of false alarms or low level ones,is a key module of security operations centre(SOC).The traditional correlation analysis mechanism is divided into two types:state machine and inference-engine.For poor precision and low efficiency,they don't adapt telecom network application.A new correlation analysis mechanism based on consecutive state by inference-engine was presented,which executed efficiently and accurately,to solve the problems of correlation analysis engine applied in telecom network.http://www.telecomsci.com/zh/article/doi/10.3969/j.issn.1000-0801.2013.10.029/security operations centrecorrelation analysis engineconsecutive statetelecommunication network
spellingShingle Ning Fan
Guoshui Shi
Jun Shen
Huamin Jin
Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network
Dianxin kexue
security operations centre
correlation analysis engine
consecutive state
telecommunication network
title Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network
title_full Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network
title_fullStr Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network
title_full_unstemmed Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network
title_short Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network
title_sort correlation analysis approach about numerous security information and event in telecommunication network
topic security operations centre
correlation analysis engine
consecutive state
telecommunication network
url http://www.telecomsci.com/zh/article/doi/10.3969/j.issn.1000-0801.2013.10.029/
work_keys_str_mv AT ningfan correlationanalysisapproachaboutnumeroussecurityinformationandeventintelecommunicationnetwork
AT guoshuishi correlationanalysisapproachaboutnumeroussecurityinformationandeventintelecommunicationnetwork
AT junshen correlationanalysisapproachaboutnumeroussecurityinformationandeventintelecommunicationnetwork
AT huaminjin correlationanalysisapproachaboutnumeroussecurityinformationandeventintelecommunicationnetwork