...
首页> 外文期刊>Journal of systems and software >On the design of an global intrusion tolerance network architecture against the internet catastrophes
【24h】

On the design of an global intrusion tolerance network architecture against the internet catastrophes

机译:关于针对互联网灾难的全球入侵容忍网络架构的设计

获取原文
获取原文并翻译 | 示例

摘要

Today's security communities face a daunting challenges - how to protect the Internet from new, unknown zero day worms. Due to their innovation, these worms are hard to be stopped by traditional security mechanisms. Therefore, instead of trying to prevent the intrusion of every such a thread, this paper proposes a new system architecture, named Virtual Machine based Intrusion Tolerance Network (VMITN), which will tolerate the new worm attack until administrators remove the vulnerability leveraged by the worm. The VMITN adopts a rough-set based recognition mechanism to detect zero day worms and a virtual machine based overlay network to mitigate attacks. We have implemented a concept proof prototype system and use NS-2 simulations to study the performance of the VMITN in a large scale network. The behavior of the famous Witty worm is simulated within the NS-2 module and the simulations result showed that our VMITN architecture can provide the reliability and survivability under severe worm attacks.
机译:当今的安全社区面临着艰巨的挑战-如何保护Internet免受新的未知零日蠕虫的侵害。由于它们的创新,这些蠕虫很难被传统的安全机制阻止。因此,本文提出了一种新的系统体系结构,称为基于虚拟机的入侵容忍网络(VMITN),它可以忍受新的蠕虫攻击,直到管理员删除蠕虫利用的漏洞,而不是尝试阻止每个这样的线程的入侵。 。 VMITN采用基于粗糙集的识别机制来检测零日蠕虫,并采用基于虚拟机的覆盖网络来减轻攻击。我们已经实现了概念验证原型系统,并使用NS-2仿真来研究VMITN在大型网络中的性能。在NS-2模块中对著名的Witty蠕虫的行为进行了仿真,仿真结果表明,我们的VMITN架构可以在严重的蠕虫攻击下提供可靠性和可生存性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号