首页> 外文OA文献 >Evaluating Security and Availability of Multiple Redundancy Designs when Applying Security Patches
【2h】

Evaluating Security and Availability of Multiple Redundancy Designs when Applying Security Patches

机译:评估多个冗余设计的安全性和可用性   应用安全补丁

代理获取
本网站仅为用户提供外文OA文献查询和代理获取服务,本网站没有原文。下单后我们将采用程序或人工为您竭诚获取高质量的原文,但由于OA文献来源多样且变更频繁,仍可能出现获取不到、文献不完整或与标题不符等情况,如果获取不到我们将提供退款服务。请知悉。

摘要

In most of modern enterprise systems, redundancy configuration is oftenconsidered to provide availability during the part of such systems is beingpatched. However, the redundancy may increase the attack surface of the system.In this paper, we model and assess the security and capacity orientedavailability of multiple server redundancy designs when applying securitypatches to the servers. We construct (1) a graphical security model to evaluatethe security under potential attacks before and after applying patches, (2) astochastic reward net model to assess the capacity oriented availability of thesystem with a patch schedule. We present our approach based on case study andmodel-based evaluation for multiple design choices. The results show redundancydesigns increase capacity oriented availability but decrease security whenapplying security patches. We define functions that compare values of securitymetrics and capacity oriented availability with the chosen upper/lower boundsto find design choices that satisfy both security and availabilityrequirements.
机译:在大多数现代企业系统中,通常会考虑在配置部分冗余系统时提供冗余配置。但是,冗余可能会增加系统的攻击面。在本文中,我们对在服务器上应用安全修补程序时对多个服务器冗余设计的安全性和面向容量的可用性进行了建模和评估。我们构建(1)图形安全模型,以评估在应用补丁之前和之后潜在攻击下的安全性;(2)随机奖励网模型,用于评估具有补丁计划的系统的面向容量的可用性。我们基于案例研究和基于模型的评估为多种设计选择提出了我们的方法。结果表明,冗余设计提高了面向容量的可用性,但在应用安全补丁时降低了安全性。我们定义了一些功能,这些功能将安全性指标和面向容量的可用性的值与所选的上限/下限进行比较,以找到满足安全性和可用性要求的设计选择。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
代理获取

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号