A Network Security Evaluation Model based on Common Criteria

A new model of network security assessment is proposed in this paper. A single IT entity is evaluated through EAL; The composite IT entities are evaluated by CAP. The model analyzes the security value of network elements, and adopts the Geometric mean method to determine the security value of the entire network. The effectiveness of this method is validated through the evaluation of a practical system.

[1]  Chris McNab Network Security Assessment , 2004 .

[2]  Zhuang Yi Quantitative risk assessment model for network security , 2007 .

[3]  Feng Dengguo Survey of Common Criteria Evaluation , 2006 .

[4]  Seoksoo Kim,et al.  A Study on Composite System Vulnerability through CC Analysis , 2008, 2008 International Conference on Multimedia and Ubiquitous Engineering (mue 2008).