论文标题
建模网络安全:电子邮件系统的案例研究
Modeling Network Security: Case Study of Email System
论文作者
论文摘要
我们研究计算机网络安全性的运营安全性,包括基础架构,内部流程,资源,信息和物理环境。当前开发安全框架的工作重点是有助于应用常见词汇的安全本体,但是这种方法无助于为整体安全方法构建基础。我们专注于定义界限并通过开发图表表示(即模型)作为描述计算机网络流程的手段来定义安全系统的表示。该模型称为东西机,是制定安全策略和计划的第一步。总体目的是证明安全系统的代表性在通过对操作环境的概念描述(在进行主动安全操作的区域)中可见的思维方面起着关键作用。我们通过概念描述真实的电子邮件系统,将提出的模型应用于电子邮件安全。
We study operational security in computer network security, including infrastructure, internal processes, resources, information, and physical environment. Current works on developing a security framework focus on a security ontology that contributes to applying common vocabulary, but such an approach does not assist in constructing a foundation for a holistic security methodology. We focus on defining the bounds and creating a representation of a security system by developing a diagrammatic representation (i.e. a model) as a means to describe computer network processes. The model, referred to a thinging machine, is a first step toward developing a security strategy and plan. The general aim is to demonstrate that the representation of the security system plays a key role in making thinking visible through conceptual description of the operational environment, a region in which active security operations are undertaken. We apply the proposed model for email security by conceptually describing a real email system.