Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network
Correlation analysis engine which correlate isolated security event as a chain to find out the real threat from a large number of false alarms or low level ones,is a key module of security operations centre(SOC).The traditional correlation analysis mechanism is divided into two types:state machine a...
Saved in:
Main Authors: | , , , |
---|---|
Format: | Article |
Language: | zho |
Published: |
Beijing Xintong Media Co., Ltd
2013-10-01
|
Series: | Dianxin kexue |
Subjects: | |
Online Access: | http://www.telecomsci.com/zh/article/doi/10.3969/j.issn.1000-0801.2013.10.029/ |
Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
_version_ | 1841529230600437760 |
---|---|
author | Ning Fan Guoshui Shi Jun Shen Huamin Jin |
author_facet | Ning Fan Guoshui Shi Jun Shen Huamin Jin |
author_sort | Ning Fan |
collection | DOAJ |
description | Correlation analysis engine which correlate isolated security event as a chain to find out the real threat from a large number of false alarms or low level ones,is a key module of security operations centre(SOC).The traditional correlation analysis mechanism is divided into two types:state machine and inference-engine.For poor precision and low efficiency,they don't adapt telecom network application.A new correlation analysis mechanism based on consecutive state by inference-engine was presented,which executed efficiently and accurately,to solve the problems of correlation analysis engine applied in telecom network. |
format | Article |
id | doaj-art-0bef8ac55e9344ed9e590d249168745e |
institution | Kabale University |
issn | 1000-0801 |
language | zho |
publishDate | 2013-10-01 |
publisher | Beijing Xintong Media Co., Ltd |
record_format | Article |
series | Dianxin kexue |
spelling | doaj-art-0bef8ac55e9344ed9e590d249168745e2025-01-15T03:21:39ZzhoBeijing Xintong Media Co., LtdDianxin kexue1000-08012013-10-012916817259626330Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication NetworkNing FanGuoshui ShiJun ShenHuamin JinCorrelation analysis engine which correlate isolated security event as a chain to find out the real threat from a large number of false alarms or low level ones,is a key module of security operations centre(SOC).The traditional correlation analysis mechanism is divided into two types:state machine and inference-engine.For poor precision and low efficiency,they don't adapt telecom network application.A new correlation analysis mechanism based on consecutive state by inference-engine was presented,which executed efficiently and accurately,to solve the problems of correlation analysis engine applied in telecom network.http://www.telecomsci.com/zh/article/doi/10.3969/j.issn.1000-0801.2013.10.029/security operations centrecorrelation analysis engineconsecutive statetelecommunication network |
spellingShingle | Ning Fan Guoshui Shi Jun Shen Huamin Jin Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network Dianxin kexue security operations centre correlation analysis engine consecutive state telecommunication network |
title | Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network |
title_full | Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network |
title_fullStr | Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network |
title_full_unstemmed | Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network |
title_short | Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network |
title_sort | correlation analysis approach about numerous security information and event in telecommunication network |
topic | security operations centre correlation analysis engine consecutive state telecommunication network |
url | http://www.telecomsci.com/zh/article/doi/10.3969/j.issn.1000-0801.2013.10.029/ |
work_keys_str_mv | AT ningfan correlationanalysisapproachaboutnumeroussecurityinformationandeventintelecommunicationnetwork AT guoshuishi correlationanalysisapproachaboutnumeroussecurityinformationandeventintelecommunicationnetwork AT junshen correlationanalysisapproachaboutnumeroussecurityinformationandeventintelecommunicationnetwork AT huaminjin correlationanalysisapproachaboutnumeroussecurityinformationandeventintelecommunicationnetwork |