首页> 外文会议>International Conference on Network and System Security >Attack-resilient compliance monitoring for large distributed infrastructure systems
【24h】

Attack-resilient compliance monitoring for large distributed infrastructure systems

机译:大型分布式基础设施系统的攻击 - 弹性合规性监控

获取原文

摘要

The security of monitoring systems is critical for maintaining an accurate view of the state of infrastructure systems such as enterprise networks and critical infrastructure systems. A malicious user that controls a monitoring system has the ability of delaying the detection of security attacks and sabotages, and can acquire information about the infrastructure that can enable additional attacks. In this paper we present a distributed architecture that increases the resilient of monitoring systems to attacks against their availability, integrity, and confidentiality. Our approach is based on distributing the knowledge of the state of the infrastructure to a large number of non-dedicated servers, so that the compromise of any limited number of hosts does not cause a compromise of the entire monitoring system. We present an algorithm able to integrate information across the distributed servers to evaluate complex security policies. We analyze the security properties of our approach, and we experimentally evaluate the performance and the resilience of our architecture. We show that, compared to current solutions, our solution increases the resilience of a monitoring system while reducing the load on each monitoring machine.
机译:监控系统的安全性对于维护诸如企业网络和关键基础设施系统等基础设施系统的准确观点至关重要。控制监控系统的恶意用户具有延迟检测安全攻击和破坏的能力,并且可以获取有关可以实现额外攻击的基础架构的信息。在本文中,我们提出了一种分布式架构,可以增加监测系统的弹性,以防止其可用性,完整性和机密性攻击。我们的方法是基于将基础架构状态的知识分发到大量非专用服务器,以便任何有限数量的主机的妥协不会导致整个监控系统的妥协。我们介绍了一种能够在分布式服务器上集成信息的算法来评估复杂的安全策略。我们分析了我们方法的安全性质,我们通过实验评估了架构的性能和恢复力。我们展示,与当前解决方案相比,我们的解决方案增加了监控系统的弹性,同时减少了每个监控机器上的负载。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号