北京邮电大学学报

  • EI核心期刊

北京邮电大学学报 ›› 2008, Vol. 31 ›› Issue (3): 94-97.doi: 10.13190/jbupt.200803.94.287

• 研究报告 • 上一篇    下一篇

入侵容忍系统的状态转移模型定量分析

周 华1, 孟相如1, 杨茂繁2, 张 立1   

  1. 1. 空军工程大学 电讯工程学院, 西安 710077; 2. 北京邮电大学 电信工程学院, 北京 100876
  • 收稿日期:2007-10-17 修回日期:1900-01-01 出版日期:2008-06-28 发布日期:2008-06-28
  • 通讯作者: 周 华

Quantifying the State Transition Model of Intrusion Tolerance System

ZHOU Hua1, MENG Xiang-ru1, Yang Mao-fan2, ZHANG Li1   

  1. 1. The Telecommunication Engineering Institute, Air Force Engineering University, Xi’an, Shaanxi 710077, China;
    2. School of Telecommunication Engineering, Beijing University of Posts and Telecommunications, Beijing 100876, China
  • Received:2007-10-17 Revised:1900-01-01 Online:2008-06-28 Published:2008-06-28
  • Contact: ZHOU Hua

摘要:

对入侵容忍系统状态转移模型进行了改进,并以此构建了半马尔可夫过程(SMP)模型,计算各个状态的稳态概率. 针对4类不同的攻击行为,运用该模型研究入侵容忍系统的可用性、完整性与机密性,用以定量评估入侵容忍系统的安全属性.比较分析了系统安全属性的数值结果,为在不同攻击行为下采取有效的容侵策略提供了依据.

关键词: 入侵容忍, 状态转移, 半马尔可夫过程, 安全属性

Abstract:

An improvement in the state transition model of intrusion tolerance system was proposed and a semi-Markov process (SMP) model is built. The steady-state probability of each state in the model is computed. In order to evaluate the security attributes quantitatively, the SMP model is used to study availability, integrity and confidentiality of intrusion tolerance system under four kinds of attacks. The numerical result is presented and analyzed. The results show that they are useful references to taking effective measures to tolerate the different attacks.

Key words: intrusion tolerance, state transition, semi-Markov process, security attribute

中图分类号: