首页> 外文OA文献 >Intrusion detection and prevention of web service attacks for software as a service:Fuzzy association rules vs fuzzy associative patterns
【2h】

Intrusion detection and prevention of web service attacks for software as a service:Fuzzy association rules vs fuzzy associative patterns

机译:软件即服务的Web服务攻击的入侵检测和预防:模糊关联规则与模糊关联模式

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

Cloud computing inherits all the systems, networks as well asWeb Services’ security vulnerabilities, in particularudfor software as a service (SaaS), where business applications or services are provided over the Cloud as Web Service (WS). Hence, WS-based applications must be protected against loss of integrity, confidentiality and availability when they are deployed over to the Cloud environment. Many existing IDP systems address only attacks mostly occurring at PaaS and IaaS. In this paper, we present our fuzzy association rule-based (FAR) and fuzzy associative pattern-based (FAP) intrusion detection and prevention (IDP) systems in defending against WS attacks at the SaaS level. Our experimental results have validated the capabilities of these two IDP systems in terms of detection of known attacks and prediction of newvariant attacksudwith accuracy close to 100%. For each transaction transacted over the Cloud platform, detection, prevention or prediction is carried out in less than five seconds. For load and volume testing on the SaaS where the system is under stress (at a work load of 5000 concurrent users submitting normal, suspicious and malicious transactions over a time interval of 300 seconds), the FAR IDP system provides close to 95% service availability to normal transactions. Future work involves determining moreudquality attributes besides service availability, such as latency, throughput and accountability for a more trustworthy SaaS.
机译:云计算继承了所有系统,网络以及Web服务的安全漏洞,特别是 udfor软件即服务(SaaS),其中业务应用程序或服务通过云即Web服务(WS)提供。因此,当将基于WS的应用程序部署到Cloud环境中时,必须保护它们免受完整性,机密性和可用性的损失。许多现有的IDP系统仅解决大多数在PaaS和IaaS发生的攻击。在本文中,我们提出了基于模糊关联规则(FAR)和基于模糊关联模式(FAP)的入侵检测与防御(IDP)系统,以防御SaaS级别的WS攻击。我们的实验结果在检测已知攻击和预测新变种攻击方面证实了这两个IDP系统的功能,其准确性接近100%。对于通过Cloud平台进行的每笔交易,检测,预防或预测都将在不到五秒钟的时间内完成。为了在系统承受压力的SaaS上进行负载和容量测试(在5000个并发用户的工作负载下,在300秒的时间间隔内提交正常,可疑和恶意交易),FAR IDP系统可提供接近95%的服务可用性正常交易。未来的工作将涉及确定除服务可用性之外的更多不等属性,例如更可靠的SaaS的延迟,吞吐量和责任感。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号