北京邮电大学学报

  • EI核心期刊

北京邮电大学学报 ›› 2014, Vol. 37 ›› Issue (s1): 92-96.doi: 10.13190/j.jbupt.2014.s1.018

• 研究报告 • 上一篇    下一篇

基于随机博弈与网络熵的网络安全性评估

陈永强1, 吴晓平1, 付钰1, 宋衍2   

  1. 1. 海军工程大学 信息安全系, 武汉 430033;
    2. 信息保障技术重点实验室, 北京 100091
  • 收稿日期:2014-01-26 出版日期:2014-06-28 发布日期:2014-06-28
  • 作者简介:陈永强(1981- ),男,博士生,E-mail:chenyongqiang919@163.com;吴晓平(1961- ),男,教授,博士生导师.
  • 基金资助:

    国家自然科学基金项目(71171198,61100042);湖北省自然科学基金项目(2011CDB052);海军工程大学基金项目(HGDYDJJ12009)

Network Security Evaluation Based on Stochastic Game and Network Entropy

CHEN Yong-qiang1, WU Xiao-ping1, FU Yu1, SONG Yan2   

  1. 1. Department of Information Security, Naval University of Engineering, Wuhan 430033, China;
    2. Information Security Technology Key Laboratory, Beijing 100091, China
  • Received:2014-01-26 Online:2014-06-28 Published:2014-06-28
  • Supported by:
     

摘要:

提出了一种网络熵和随机博弈相结合的网络安全性评估方法.基于随机博弈构建了多人、多状态的网络对抗随机博弈模型.引入网络熵描述网络安全性能,通过求解模型的Nash均衡解获得最优防御策略和网络状态概率,进而利用网络状态熵差对网络安全性进行评估;最后给出了网络安全性评估算法.实例分析表明,该方法能有效评估网络安全性能,为主动防御提供决策支持.

关键词: 网络安全, 网络熵, 随机博弈, 对抗模型, 入侵效果

Abstract:

A security evaluation based on network entropy and stochastic game was presented. An attack defense stochastic game model was proposed to describe the conflict of network security which is dynamic and multi-state. The concept of network entropy was introduced to describe network security performance. The optimal defense strategy and network state probability was obtained by solving the Nash equilibrium of attack defense stochastic game model. On this basis, the security of network was assessed combining with network states entropy difference. Network security evaluation algorithm was given at last. An example is representatively provided to show that the method can effectively assess the security of network and predict intrusion behavior.

Key words: network security, network entropy, stochastic game, confrontation model, intrusion effect

中图分类号: