| At present,all walks of life are developing towards informatization.Information security issues become the focus of current research,with it’s frequent exposure in various industries in recent years.The warship system is a typical cyber-physical system,and the research on its information security can not directly copy the experience of the traditional IT domain.Based on in-depth analysis and summary of the domestic and international relevant research results,this paper puts forward an information security vulnerability assessment method of warship system,and it’s verified by an application example.Fina lly,the assessment software is designed and implemented.First of all,the differences between the warship system and the traditional IT system are analyzed,and the information security threats and vulnerabilit ies of warship system are discussed.On this basis,the paper describes how to build a vulnerability assessment model for the information security of warship system based on workflow.The workflow assessment model is established according to the business process of the system,and a hierarchical assessment model is established for the shipboard equipments and communication links.Finally,an information security vulnerability assessment model based on workflow is accomplished.Furthermore,an information security vulnerability assessment algorithm based on workflow assessment model is proposed.The FAHP(Fuzzy Analytic Hierarchy Process)is applied to evaluate the security vulnerability of equipments and communication links involved in the functional business process.Based on the evaluation results of the security vulnerability of equipments and links,the information security vulnerability of the functional process of warship system is evaluated by the method of logical reasoning.The effectiveness of the assessment model and assessment algorithm are verified through an example.Finally,the assessment software is designed and some key interfaces are given. |