As China's continuous improvement in the degree of information, the wireless communication network has covered all regions of the country, and information has also brought a great deal of information network security issues. In this paper, firstly, the information security emergency response procedures and disposal system are proposed according to the comprehensive analysis of weak links in information security defense system. Secondly, the OFDM - MIMO and the support vector machine technologies are applied to deal with unexpected information security incidents. Experiment results show that these technologies are reasonable in practical application. Finally, an example for specific application is given to clarify the processes of information security emergency response. The risks and potential losses met by important social information systems can be reduced through the timely detection, tracking, analysis and recognition of a major hazard information security incident and proper response. it is very important to strengthen information security emergency response capabilities in the future.
[1]
Nevil Brownlee,et al.
Expectations for Computer Security Incident Response
,
1998,
RFC.
[2]
Wenke Lee,et al.
A Data Mining Framework for Constructing Features and Models for Intrusion Detection Systems
,
1999
.
[3]
Charles E. Kahn,et al.
A common intrusion detection framework
,
2000
.
[4]
Dorothy E. Denning,et al.
An Intrusion-Detection Model
,
1986,
1986 IEEE Symposium on Security and Privacy.
[5]
Salvatore J. Stolfo,et al.
A framework for constructing features and models for intrusion detection systems
,
2000,
TSEC.