...
首页> 外文期刊>Dependable and Secure Computing, IEEE Transactions on >Evaluating the Vulnerability of Network Traffic Using Joint Security and Routing Analysis
【24h】

Evaluating the Vulnerability of Network Traffic Using Joint Security and Routing Analysis

机译:使用联合安全性和路由分析评估网络流量的漏洞

获取原文
获取原文并翻译 | 示例

摘要

Joint analysis of security and routing protocols in wireless networks reveals vulnerabilities of secure network traffic that remain undetected when security and routing protocols are analyzed independently. We formulate a class of continuous metrics to evaluate the vulnerability of network traffic as a function of security and routing protocols used in wireless networks. We develop two complementary vulnerability definitions using set theoretic and circuit theoretic interpretations of the security of network traffic, allowing a network analyst or an adversary to determine weaknesses in the secure network. We formalize node capture attacks using the vulnerability metric as a nonlinear integer programming minimization problem and propose the GNAVE algorithm, a Greedy Node capture Approximation using Vulnerability Evaluation. We discuss the availability of security parameters to the adversary and show that unknown parameters can be estimated using probabilistic analysis. We demonstrate vulnerability evaluation using the proposed metrics and node capture attacks using the GNAVE algorithm through detailed examples and simulation.
机译:对无线网络中的安全和路由协议进行的联合分析显示,当独立分析安全和路由协议时,安全网络流量的漏洞仍然无法检测到。我们制定了一类连续的度量标准,以根据无线网络中使用的安全性和路由协议评估网络流量的脆弱性。我们使用对网络流量安全性的集合理论和电路理论解释来开发两个互补的漏洞定义,从而使网络分析师或对手可以确定安全网络中的弱点。我们使用脆弱性度量作为非线性整数编程最小化问题来形式化节点捕获攻击,并提出GNAVE算法,即使用漏洞评估的贪婪节点捕获近似。我们讨论了安全参数对对手的可用性,并表明可以使用概率分析来估计未知参数。我们通过详细的示例和仿真演示了使用建议的度量标准进行的漏洞评估以及使用GNAVE算法的节点捕获攻击。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号