[go: up one dir, main page]

CN108650139A - A kind of powerline network monitoring system - Google Patents

A kind of powerline network monitoring system Download PDF

Info

Publication number
CN108650139A
CN108650139A CN201810481817.3A CN201810481817A CN108650139A CN 108650139 A CN108650139 A CN 108650139A CN 201810481817 A CN201810481817 A CN 201810481817A CN 108650139 A CN108650139 A CN 108650139A
Authority
CN
China
Prior art keywords
data
security situation
network
value
power communication
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Withdrawn
Application number
CN201810481817.3A
Other languages
Chinese (zh)
Inventor
李健斌
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Shenzhen Li Li Power Technology Co Ltd
Original Assignee
Shenzhen Li Li Power Technology Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shenzhen Li Li Power Technology Co Ltd filed Critical Shenzhen Li Li Power Technology Co Ltd
Priority to CN201810481817.3A priority Critical patent/CN108650139A/en
Publication of CN108650139A publication Critical patent/CN108650139A/en
Withdrawn legal-status Critical Current

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/14Network analysis or design
    • H04L41/147Network analysis or design for predicting network behaviour
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04BTRANSMISSION
    • H04B3/00Line transmission systems
    • H04B3/02Details
    • H04B3/46Monitoring; Testing
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/14Network analysis or design
    • H04L41/145Network analysis or design involving simulating, designing, planning or modelling of a network
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L43/00Arrangements for monitoring or testing data switching networks
    • H04L43/08Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters
    • H04L43/0805Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters by checking availability
    • H04L43/0817Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters by checking availability by checking functioning
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/20Network architectures or network communication protocols for network security for managing network security; network security policies in general

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Security & Cryptography (AREA)
  • Computer Hardware Design (AREA)
  • Computing Systems (AREA)
  • General Engineering & Computer Science (AREA)
  • Environmental & Geological Engineering (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Abstract

The present invention provides a kind of powerline network monitoring system, including:Data acquisition module includes the Multiple Source Sensor for acquiring different parameters, for obtaining the multi-data source data in powerline network;Data processing module obtains standardized data for collected multi-data source data to be extracted, checked and handled;Data memory module, in the standardized data storage to the file system of big data platform of acquisition;Data analysis module obtains the multidimensional Study on Trend result of powerline network equipment operation for carrying out analyzing processing to the standardized data;Data display module, for showing the analysis result.The present invention obtains the running state data of equipment and network in powerline network from various dimensions, carries out the analysis of various dimensions to collected status data using big data, comprehensive monitoring is carried out to system, improves stability and the safety of powerline network.

Description

Power communication network monitoring system
Technical Field
The invention relates to the field of electric power, in particular to an electric power communication network monitoring system.
Background
At present, the power communication network is developed towards gridding, complication and distribution, the contact among the communication network nodes is more frequent, and the power equipment is continuously replaced along with the development of the technology. Resulting in an uninterrupted power communications network producing a huge amount of communications data. These data structures are complex, and have a large number of sources and data types. Meanwhile, the attack means suffered by the power communication network is also continuously improved, and the attack means is extended towards the direction of complication and distribution. The safe operation of power communication networks is subject to increasingly severe scrutiny.
In the existing power communication network management system, due to low automation and intelligence degrees, the situation of performance of each aspect in the power communication network cannot be accurately sensed and evaluated, so that the system cannot respond to the attack suffered by the network in real time. Therefore, in a large-scale power communication network, the real-time state and the derivation trend of the whole power communication network are monitored and managed, and the method has great significance for a decision maker to make decisions for various situations at the first time.
Disclosure of Invention
In view of the above problems, the present invention is directed to a power communication network monitoring system.
The purpose of the invention is realized by adopting the following technical scheme:
a power communication network monitoring system comprising: the data acquisition module comprises a multi-source sensor for acquiring different parameters and is used for acquiring multi-data-source data in the power communication network; the data processing module is used for extracting, checking and processing the acquired data of multiple data sources to acquire standardized data; the data storage module is used for storing the acquired standardized data into a file system of the big data platform; the data analysis module is used for analyzing and processing the standardized data to obtain a multidimensional situation analysis result of the operation of the power communication network equipment; and the data display module is used for displaying the analysis result.
Preferably, the multi-source sensor comprises a network sensor, a system state monitoring device and a device state monitoring device in an Intrusion Detection System (IDS), wherein the network sensor is used for acquiring scale data, operation condition data, network performance data and work quality data of the power communication network; the system state monitoring equipment is used for acquiring associated data among equipment in the power communication network; the equipment state monitoring equipment is used for acquiring the operation condition data of the equipment in the power communication network.
Preferably, the data display module further includes an alarm unit, configured to send out corresponding prompt information when the abnormal analysis result is obtained.
The invention has the beneficial effects that: according to the power communication network monitoring system provided by the invention, the running state data of equipment and a network in the power communication network is acquired from multiple dimensions, the acquired state data is subjected to multi-dimensional analysis by adopting big data, the system is monitored in an all-around manner, abnormal conditions in the system are found at the first time, a decision maker can make a response at the first time, and the stability and the safety of the power communication network are improved.
Drawings
The invention is further illustrated by means of the attached drawings, but the embodiments in the drawings do not constitute any limitation to the invention, and for a person skilled in the art, other drawings can be obtained on the basis of the following drawings without inventive effort.
FIG. 1 is a block diagram of the frame of the present invention;
FIG. 2 is a block diagram of a data analysis module according to the present invention.
Reference numerals:
the system comprises a data acquisition module 1, a data processing module 2, a data storage module 3, a data analysis module 4, a data display module 5, a network security situation analysis unit 41 and a network security situation prediction unit 42
Detailed Description
The invention is further described in connection with the following application scenarios.
Referring to fig. 1, there is shown a power communication network monitoring system comprising: the data acquisition module 1 comprises a multi-source sensor for acquiring different parameters and is used for acquiring multi-data-source data in the power communication network; the data processing module 2 is used for extracting, checking and processing the acquired data of multiple data sources to acquire standardized data; the data storage module 3 is used for storing the acquired standardized data into a file system of a big data platform; the data analysis module 4 is used for analyzing and processing the standardized data to obtain a multidimensional situation analysis result of the operation of the power communication network equipment; and the data display module 5 is used for displaying the analysis result.
Preferably, the multi-source sensor comprises a network sensor, a system state monitoring device and a device state monitoring device in an Intrusion Detection System (IDS), wherein the network sensor is used for acquiring scale data, operation condition data, network performance data and work quality data of the power communication network; the system state monitoring equipment is used for acquiring associated data among equipment in the power communication network; the equipment state monitoring equipment is used for acquiring the operation condition data of the equipment in the power communication network.
Preferably, the data display module 5 further includes an alarm unit, configured to send out corresponding prompt information when the abnormal analysis result is obtained.
According to the embodiment of the invention, the operation state data of the equipment and the network in the power communication network are acquired from multiple dimensions, the acquired state data are subjected to multi-dimensional analysis by adopting big data, the system is monitored in an all-around way, abnormal conditions in the system are found at the first time, a decision maker can make a response at the first time, and the stability and the safety of the power communication network are improved.
Preferably, the data analysis module 4 includes a network security situation analysis unit 41 and a network security situation prediction unit 42; the network security situation analyzing unit 41 is configured to analyze a security situation of the power communication network and detect occurrence of a security event in the network; the network security situation prediction unit 42 is configured to predict a development trend of the network security situation based on the analysis result of the security situation and existing historical analysis data.
In the embodiment of the invention, the network security data acquired from the multi-source sensor is analyzed by the network security situation analyzing unit, so that whether a security event occurs in the network can be accurately judged in real time, and the whole power communication network is monitored; meanwhile, the network security situation prediction unit can predict the trend of the network security situation according to the result of the security situation analysis and historical analysis data, so that the system can be helped to early warn and make preparation measures for the predicted security events, and the security performance and reliability of the power communication network are improved.
Preferably, the network security situation analyzing unit 41 specifically includes:
and the information fusion layer performs data fusion on data sources collected by a plurality of sensors related to the same equipment and respectively acquires the probability that different threats have occurred, wherein the probability function of the occurrence of a single threat is as follows:
wherein,
wherein M (h, t) represents the probability of threat occurrence at time t, Mi(h) Andrespectively representing the probability of occurrence and non-occurrence of a threat, Mi(h, t) represents the probability that the ith data source detects the threat at the time t, and n represents the total number of the data sources;
and the equipment situation analysis layer acquires the security situation value of each equipment by combining the probability of the threat, wherein the adopted equipment security situation value function is as follows:
where SH represents a security posture value of the device, n represents a total number of threats to the device, and MiRepresenting the probability of occurrence of the ith threat, RiRepresenting the severity degree of the threat detected by the ith data source, wherein the severity degree is provided by a user manual prestored by the system, the user manual divides the threat severity degree into three levels of high, medium and low according to the classification of the threat and the caused consequence, and respectively recording R-3, R-2, R-1, and n represents the total number of the devices which are threatened;
the network situation analysis layer acquires a security situation value of the network system, wherein the adopted network system security situation value function is as follows:
wherein,
w=fhNh+fmNm+flNl
wherein SA represents the security situation value of the network system, n represents the total number of all devices in the network, and wiRepresenting the weight of the ith device in the network, fh,fm,flThe importance degrees of the services provided by the equipment are respectively expressed as high, middle and low quantitative scores, Nh,Nm,NlRepresents the number of high, medium and low grade services provided by the equipment, SHiTo representSecurity posture value of the ith device in the network.
According to the embodiment of the invention, the data acquired from the multiple sensors are fused by adopting the method, so that the threat occurrence probability is calculated more accurately; meanwhile, by establishing a hierarchical multi-source network security situation threat analysis model and calculating a network security situation value, quantitative estimation of a network security situation is realized, the judgment of the system on the network security situation threat is facilitated, the working efficiency of the system is improved, the accuracy and the continuity of the evaluation of the network security threat situation are improved, and the method is suitable for a large-scale power communication network system.
Preferably, the device situation analysis layer further includes: and acquiring a security situation value of the target equipment by combining the probability of the threat occurrence and the risk association degree between the equipment, wherein the adopted security situation value function is as follows:
wherein,
rjA=max{F[XAp,Xjq]}
of formula (II) to SH'ARepresenting the security posture value of the target device A, n representing the total number of threats suffered by the target device, MiRepresenting the probability of occurrence of the ith threat, RiAnd representing the severity of the ith threat, wherein the severity is provided by a user manual prestored in the system, and the user manual divides the severity of the threat into three grades of high, medium and low according to the classification of the threat and the caused consequence, and respectively records that R is 3, R is 2, R is 1 and R isjARepresenting the risk relevance of the target device A and its associated device j, m representing the total number of associated devices of the target device A, F [ X ]Ap,Xjq]Representing the risk association degree of the p module in the target equipment A and the q module in the association equipment j, wherein the risk association degree is calculated by adopting Dijkstra algorithm, SHjRepresenting associated devices jA security posture value; p is 1,2, …, P denotes the number of modules on the target device a, and Q is 1,2, …, Q denotes the number of modules on the associated device j.
In the above embodiment of the present invention, in the actual implementation of the power communication network, based on the consideration of the performance of the device, one module or multiple modules are usually deployed in the same device, and the modules cooperate with each other to complete the service logic of the whole network system, and there is a certain calling relationship or dependency relationship between the devices in the network, if a certain module is seriously dependent on the input of another module or is corresponding to the input of another module, when the latter is attacked, the former cannot normally complete the task, and it can be said that there is a risk association between the two modules; therefore, when the safety situation value of the target equipment is calculated, the risk association of the equipment is taken as a basis for consideration, the situation that the equipment in the actual power communication network is associated with each other can be effectively adapted, the accuracy of the safety situation estimation of the equipment is improved, and a foundation is laid for a decision maker to make accurate judgment according to an analysis result.
Preferably, the network security situation prediction unit 42 specifically includes:
(1) constructing an SVM security situation prediction model;
(2) generating a security situation sample data set according to the acquired network security situation value and a time sequence method, and dividing the security situation sample data set into a training sample and a test sample, wherein the training sample is used for SVM training to obtain an initial security situation prediction model, and the test sample is used for detecting the prediction precision of the initial prediction model;
(3) performing parameter optimization processing on the SVM security situation prediction model, and training to generate a final security situation prediction model;
(4) and inputting the network security situation value acquired in real time into the final security situation prediction model to acquire a predicted network security situation value, and predicting the development trend of the network security situation according to historical data analysis.
Preferably, in the network security situation prediction unit 42, performing parameter optimization processing on the SVM security situation prediction model specifically includes:
(1) randomly constructing an initial population consisting of i particles, and performing initialization setting, wherein the initialization setting comprises the steps of setting population scale, iteration times and randomly giving initial particlesAnd initial velocity of particlesWherein each particle vector represents an SVM model corresponding to different SVM parameters, comprising: a penalty coefficient C, an insensitive loss coefficient epsilon and a kernel function width parameter sigma;
(2) determining an SVM model by using parameters corresponding to the particle vectors, testing a test sample set z by using the SVM model, and calculating an adaptive value S (x) of each model to reflect the popularization and prediction capability of the SVM model, wherein the adopted adaptive value function is as follows:
wherein S (x) represents an adaptation value of the model, zcDenotes the predicted value, z 'of the c-th sample'cC represents the measured value of the C sample, and C represents the number of the test samples in the test sample set;
(3) the obtained adaptive value S (x) and the self optimal value pbestMaking a comparison if S (x)<pbestReplacing the optimal value of the previous round with the new adaptive value, and replacing the particles of the previous round with new particles;
(4) the best adaptation value p of each particlebestBest fit value g to all particlesbestMaking a comparison if pbest<gbestUsing the best adaptation value of the particleReplacing the original global best fitness value while preserving the current state of the particle;
(5) and (3) judging whether the adaptive value or the iteration number meets the requirement, if not, carrying out a new round of calculation, moving the particles which are not in the stored state to generate new particles, returning to the step (2), if so, finishing the calculation, and outputting the optimal parameters of the SVM model according to the particles with the best adaptive value.
The SVM refers to a support vector machine, is a supervised learning model, and is generally used for pattern recognition, classification, and regression analysis, wherein important parameters of the SVM model include: a penalty coefficient representing tolerance to errors; an insensitive loss coefficient epsilon used for controlling the error range; and the kernel function width parameter sigma is used for controlling the radial action range of the kernel function in the SVM model.
According to the embodiment of the invention, the network security situation is predicted by adopting the method, the nonlinear fitting (prediction) model more suitable for the network security situation is trained by utilizing the mathematical advantages of the SVM model in processing nonlinear data, small sample data and the like, and the key parameters of the SVM model are determined by adopting the method, so that the accuracy and efficiency of the network security situation prediction model can be further improved, and the guarantee is provided for the monitoring system to predict the power communication network security situation.
Finally, it should be noted that the above embodiments are only used for illustrating the technical solutions of the present invention, and not for limiting the protection scope of the present invention, although the present invention is described in detail with reference to the preferred embodiments, it should be analyzed by those skilled in the art that modifications or equivalent substitutions can be made on the technical solutions of the present invention without departing from the spirit and scope of the technical solutions of the present invention.

Claims (6)

1. A power communication network monitoring system, comprising: the data acquisition module comprises a multi-source sensor for acquiring different parameters and is used for acquiring multi-data-source data in the power communication network; the data processing module is used for extracting, checking and processing the acquired data of multiple data sources to acquire standardized data; the data storage module is used for storing the acquired standardized data into a file system of the big data platform; the data analysis module is used for analyzing and processing the standardized data to obtain a multidimensional situation analysis result of the operation of the power communication network equipment; and the data display module is used for displaying the analysis result.
2. The power communication network monitoring system of claim 1, wherein the multi-source sensors comprise network sensors, system state monitoring devices and device state monitoring devices in an Intrusion Detection System (IDS), wherein the network sensors are used for acquiring power communication network scale data, operation condition data, network performance data and work quality data; the system state monitoring equipment is used for acquiring associated data among equipment in the power communication network; the equipment state monitoring equipment is used for acquiring the operation condition data of the equipment in the power communication network.
3. The power communication network monitoring system according to claim 1, wherein the data display module further comprises an alarm unit for sending out a corresponding prompt message when the abnormal analysis result is obtained.
4. The power communication network monitoring system according to claim 1, wherein the data analysis module comprises a network security situation analysis unit and a network security situation prediction unit; the network security situation analysis unit is used for analyzing the security situation of the power communication network and detecting the occurrence of security events in the network; and the network security situation prediction unit is used for predicting the development trend of the network security situation based on the analysis result of the security situation and the existing historical analysis data.
5. The power communication network monitoring system according to claim 4, wherein the network security situation prediction unit specifically includes:
(1) constructing an SVM security situation prediction model;
(2) generating a security situation sample data set according to the acquired network security situation value and a time sequence method, and dividing the security situation sample data set into a training sample and a test sample, wherein the training sample is used for SVM training to obtain an initial security situation prediction model, and the test sample is used for detecting the prediction precision of the initial prediction model;
(3) performing parameter optimization processing on the SVM security situation prediction model, and training to generate a final security situation prediction model;
(4) and inputting the network security situation value acquired in real time into the final security situation prediction model to acquire a predicted network security situation value, and predicting the development trend of the network security situation according to historical data analysis.
6. The power communication network monitoring system according to claim 5, wherein the network security situation prediction unit performs parameter optimization processing on the SVM security situation prediction model, and specifically comprises:
(1) randomly constructing an initial population consisting of i particles, and performing initialization setting, wherein the initialization setting comprises the steps of setting population scale, iteration times and randomly giving initial particlesAnd initial velocity of particlesWherein each particle vector represents an SVM model corresponding to different SVM parameters, comprising: a penalty coefficient C, an insensitive loss coefficient epsilon and a kernel function width parameter sigma;
(2) determining an SVM model by using parameters corresponding to the particle vectors, testing a test sample set z by using the SVM model, and calculating an adaptive value S (x) of each model to reflect the popularization and prediction capability of the SVM model, wherein the adopted adaptive value function is as follows:
wherein S (x) represents an adaptation value of the model,zcdenotes the predicted value, z 'of the c-th sample'cC represents the measured value of the C sample, and C represents the number of the test samples in the test sample set;
(3) the obtained adaptive value S (x) and the self optimal value pbestMaking a comparison if S (x)<pbestReplacing the optimal value of the previous round with the new adaptive value, and replacing the particles of the previous round with new particles;
(4) the best adaptation value p of each particlebestBest fit value g to all particlesbestMaking a comparison if pbest<gbestReplacing the original global best adaptation value with the best adaptation value of the particle, and simultaneously saving the current state of the particle;
(5) and (3) judging whether the adaptive value or the iteration number meets the requirement, if not, carrying out a new round of calculation, moving the particles which are not in the stored state to generate new particles, returning to the step (2), if so, finishing the calculation, and outputting the optimal parameters of the SVM model according to the particles with the best adaptive value.
CN201810481817.3A 2018-05-18 2018-05-18 A kind of powerline network monitoring system Withdrawn CN108650139A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201810481817.3A CN108650139A (en) 2018-05-18 2018-05-18 A kind of powerline network monitoring system

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201810481817.3A CN108650139A (en) 2018-05-18 2018-05-18 A kind of powerline network monitoring system

Publications (1)

Publication Number Publication Date
CN108650139A true CN108650139A (en) 2018-10-12

Family

ID=63757084

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201810481817.3A Withdrawn CN108650139A (en) 2018-05-18 2018-05-18 A kind of powerline network monitoring system

Country Status (1)

Country Link
CN (1) CN108650139A (en)

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109254199A (en) * 2018-10-13 2019-01-22 国家电网有限公司 A kind of method for rapidly testing of powerline network
CN109391515A (en) * 2018-11-07 2019-02-26 武汉烽火技术服务有限公司 Network failure prediction technique and system based on dove group's algorithm optimization support vector machines
CN109656793A (en) * 2018-11-22 2019-04-19 安徽继远软件有限公司 A kind of information system performance stereoscopic monitoring method based on multi-source heterogeneous data fusion
CN111324504A (en) * 2018-12-14 2020-06-23 网山西省电力公司信息通信分公司 Method and device for monitoring operation state of power communication network
CN111611589A (en) * 2020-05-19 2020-09-01 浙江华途信息安全技术股份有限公司 Data security platform, computer equipment and readable storage medium
CN112583792A (en) * 2020-11-16 2021-03-30 浙江乾冠信息安全研究院有限公司 Daily monitoring system and method for network station group
CN113242226A (en) * 2021-05-05 2021-08-10 航天云网云制造科技(浙江)有限公司 Big data-based intelligent network security situation prediction method
CN115695150A (en) * 2022-11-01 2023-02-03 广州城轨科技有限公司 Method and device for detecting networking equipment based on distributed heterogeneous fusion
CN117828304A (en) * 2024-01-10 2024-04-05 河海大学 A method and system for monitoring and analyzing electric energy based on big data

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101436967A (en) * 2008-12-23 2009-05-20 北京邮电大学 Method and system for evaluating network safety situation
CN107046534A (en) * 2017-03-24 2017-08-15 厦门卓讯信息技术有限公司 A kind of network safety situation model training method, recognition methods and identifying device
CN107124394A (en) * 2017-03-10 2017-09-01 北京国电通网络技术有限公司 A kind of powerline network security postures Forecasting Methodology and system
CN107124325A (en) * 2017-03-10 2017-09-01 北京国电通网络技术有限公司 A kind of power communication network operation safety evaluation method and system

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101436967A (en) * 2008-12-23 2009-05-20 北京邮电大学 Method and system for evaluating network safety situation
CN107124394A (en) * 2017-03-10 2017-09-01 北京国电通网络技术有限公司 A kind of powerline network security postures Forecasting Methodology and system
CN107124325A (en) * 2017-03-10 2017-09-01 北京国电通网络技术有限公司 A kind of power communication network operation safety evaluation method and system
CN107046534A (en) * 2017-03-24 2017-08-15 厦门卓讯信息技术有限公司 A kind of network safety situation model training method, recognition methods and identifying device

Non-Patent Citations (4)

* Cited by examiner, † Cited by third party
Title
于滢: "网络安全态势感知系统的研究", 《电脑知识与技术》 *
井经涛: "一种智能化网络安全态势评估方法", 《中国优秀硕士学位论文全文数据库 信息科技辑》 *
孟锦 等: "考虑时间参数的网络安全态势评估模型研究", 《计算机应用研究》 *
高昆仑 等: "基于支持向量机和粒子群算法的", 《电网技术》 *

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN109254199A (en) * 2018-10-13 2019-01-22 国家电网有限公司 A kind of method for rapidly testing of powerline network
CN109391515A (en) * 2018-11-07 2019-02-26 武汉烽火技术服务有限公司 Network failure prediction technique and system based on dove group's algorithm optimization support vector machines
CN109656793A (en) * 2018-11-22 2019-04-19 安徽继远软件有限公司 A kind of information system performance stereoscopic monitoring method based on multi-source heterogeneous data fusion
CN111324504A (en) * 2018-12-14 2020-06-23 网山西省电力公司信息通信分公司 Method and device for monitoring operation state of power communication network
CN111324504B (en) * 2018-12-14 2024-02-27 国网山西省电力公司信息通信分公司 Method and device for monitoring running state of power communication network
CN111611589A (en) * 2020-05-19 2020-09-01 浙江华途信息安全技术股份有限公司 Data security platform, computer equipment and readable storage medium
CN111611589B (en) * 2020-05-19 2023-07-04 浙江华途信息安全技术股份有限公司 Data security platform, computer equipment and readable storage medium
CN112583792A (en) * 2020-11-16 2021-03-30 浙江乾冠信息安全研究院有限公司 Daily monitoring system and method for network station group
CN113242226A (en) * 2021-05-05 2021-08-10 航天云网云制造科技(浙江)有限公司 Big data-based intelligent network security situation prediction method
CN115695150A (en) * 2022-11-01 2023-02-03 广州城轨科技有限公司 Method and device for detecting networking equipment based on distributed heterogeneous fusion
CN115695150B (en) * 2022-11-01 2023-08-08 广州城轨科技有限公司 Method and device for detecting networking equipment based on distributed heterogeneous fusion
CN117828304A (en) * 2024-01-10 2024-04-05 河海大学 A method and system for monitoring and analyzing electric energy based on big data

Similar Documents

Publication Publication Date Title
CN108650139A (en) A kind of powerline network monitoring system
CN108418841B (en) AI-based next-generation critical information infrastructure network security situational awareness system
An et al. Data integrity attack in dynamic state estimation of smart grid: Attack model and countermeasures
CN112987675B (en) Method, device, computer equipment and medium for anomaly detection
CN112884199B (en) Hydropower station equipment fault prediction method, hydropower station equipment fault prediction device, computer equipment and storage medium
CN118041661A (en) Abnormal network flow monitoring method, device and equipment based on deep learning and readable storage medium
CN104125112B (en) Physical-information fuzzy inference based smart power grid attack detection method
CN106888205A (en) A kind of non-intrusion type is based on the PLC method for detecting abnormality of power consumption analysis
CN115378711B (en) Intrusion detection method and system for industrial control network
CN117471346A (en) Method and system for determining remaining life and health status of retired battery module
Imamverdiyev et al. Anomaly detection in network traffic using extreme learning machine
Banik et al. Anomaly detection techniques in smart grid systems: A review
CN117439916A (en) Network security test evaluation system and method
CN118473732B (en) Internet of things generator data transmission safety management system, method and identification method
Kummerow et al. Cyber-physical data stream assessment incorporating Digital Twins in future power systems
CN112734977B (en) Equipment risk early warning system and algorithm based on Internet of things
CN119719929A (en) A control method for false alarm of fire protection in energy storage system
CN119599445A (en) Electrical operation safety protection control method based on real-time data stream
CN114004331A (en) A fault analysis method based on key indicators and deep learning
CN119788344B (en) Knowledge-graph-based network security dynamic early warning method and system
CN119814479A (en) A railway data asset security monitoring and risk warning method and system
CN119474672A (en) Early warning method for abnormal emissions from pollution facilities based on big data analysis
CN118886663A (en) A water resources dynamic monitoring method and system based on digital twin
CN117354168A (en) Hybrid ensemble method for predictive modeling of Internet of things
CN117494009A (en) Electrical equipment state evaluation method based on insulating material pyrolysis analysis and cloud platform

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
WW01 Invention patent application withdrawn after publication
WW01 Invention patent application withdrawn after publication

Application publication date: 20181012