Affiliation(s):
Chengdu College of University of Electronic Science and Technology of China,Chengdu 610731,China;
moreAffiliation(s): Chengdu College of University of Electronic Science and Technology of China,Chengdu 610731,China; Northwestern Polytechnical University, Xi’an 710000, China; China Electronics Technology Network Information Security Co., Ltd, Chengdu 610000, China;
less
Dandan WU, Jie CHEN, Runyun XIE, Ke CHEN. An ontology-based security model OntoCSD for integrated solution of cyberspace defense[J]. Frontiers of Information Technology & Electronic Engineering,in press.https://doi.org/10.1631/FITEE.2300662
@article{title="An ontology-based security model OntoCSD for integrated solution of cyberspace defense", author="Dandan WU, Jie CHEN, Runyun XIE, Ke CHEN", journal="Frontiers of Information Technology & Electronic Engineering", year="in press", publisher="Zhejiang University Press & Springer", doi="https://doi.org/10.1631/FITEE.2300662" }
%0 Journal Article %T An ontology-based security model OntoCSD for integrated solution of cyberspace defense %A Dandan WU %A Jie CHEN %A Runyun XIE %A Ke CHEN %J Frontiers of Information Technology & Electronic Engineering %P %@ 2095-9184 %D in press %I Zhejiang University Press & Springer doi="https://doi.org/10.1631/FITEE.2300662"
TY - JOUR T1 - An ontology-based security model OntoCSD for integrated solution of cyberspace defense A1 - Dandan WU A1 - Jie CHEN A1 - Runyun XIE A1 - Ke CHEN J0 - Frontiers of Information Technology & Electronic Engineering SP - EP - %@ 2095-9184 Y1 - in press PB - Zhejiang University Press & Springer ER - doi="https://doi.org/10.1631/FITEE.2300662"
Abstract: The construction of an integrated solution for cyberspace defense with dynamic, flexible, and intelligent features is a new idea. In order to solve the problem whereby traditional static protection methods cannot respond to various network attacks or security demands in an adversarial network environment in good time, and to form a complete integrated solution from “threat discovery” to “decision-making generation”, we propose an ontology-based security model, OntoCSD, for an integrated solution for cyberspace defense that uses Web Ontology Language (OWL) to represent the ontology classes and relationships of threat monitoring, decision-making, response, defense in cyberspace, and uses Semantic Web Rule Language (SWRL) to design the defensive reasoning rules. OntoCSD can discover potential relationships between network attacks, vulnerabilities, the security state, and defense strategies. Further, an Artificial Intelligence (AI) expert system based on Case-Based Reasoning (CBR) is used to quickly generate a detailed and comprehensive decision-making scheme. Finally, through the Kendall's coefficient of concordance (W) and four experimental cases in a typical computer network defense (CND) system, which reasons on represented facts and the ontology, OntoCSD’s consistency and its feasibility to solve the issues in the field of cyberspace defense are validated. OntoCSD supports automatic association and reasoning, and provides an integrated solution framework of cyberspace defense.
Darkslateblue:Affiliate; Royal Blue:Author; Turquoise:Article
Reference
Open peer comments: Debate/Discuss/Question/Opinion
Open peer comments: Debate/Discuss/Question/Opinion
<1>