Research on Security Situation Reasoning Based on Prolog
Shilin Chen · Information Security and Communications Privacy · 2011
The sensation and analysis of security situation is a hot spot in network security research domain. As the network structure becomes more complicated and the devices swell,mass data of various kinds obtained in the network monitor process needs to be categorized,calculated and summarized,thus to realize a integrated situation view in assistance of admin decision. In considering the advantages of artificial languages in rule description and reasoning procedure and with Prolog as an example the reasoning technique in security situation evaluation is studied,and through specific knowledge representation and system modeling,the security information facts,rules and goals are extracted,and relatively complete method and system design for network security situation reasoning are proposed.