Telecommunications Science ›› 2013, Vol. 29 ›› Issue (10): 168-172.doi: 10.3969/j.issn.1000-0801.2013.10.029

• Operational Innovation Forum • Previous Articles    

Correlation Analysis Approach About Numerous Security Information and Event in Telecommunication Network

Ning Fan,Guoshui Shi,Jun Shen,Huamin Jin   

  1. Guangdong Research Institute of China Telecom Co.,Ltd.,Guangzhou 510630,China
  • Online:2013-10-15 Published:2017-06-19

Abstract:

Correlation analysis engine which correlate isolated security event as a chain to find out the real threat from a large number of false alarms or low level ones,is a key module of security operations centre(SOC).The traditional correlation analysis mechanism is divided into two types:state machine and inference-engine.For poor precision and low efficiency,they don't adapt telecom network application.A new correlation analysis mechanism based on consecutive state by inference-engine was presented,which executed efficiently and accurately,to solve the problems of correlation analysis engine applied in telecom network.

Key words: security operations centre, correlation analysis engine, consecutive state, telecommunication network

No Suggested Reading articles found!