首页 | 本学科首页   官方微博 | 高级检索  
     

基于非零和攻防博弈模型的主动防御策略选取方法
引用本文:陈永强,付钰,吴晓平.基于非零和攻防博弈模型的主动防御策略选取方法[J].计算机应用,2013,33(5):1347-1352.
作者姓名:陈永强  付钰  吴晓平
作者单位:海军工程大学 信息安全系,武汉 430033
基金项目:国家自然科学基金资助项目(71171198);湖北省自然科学基金资助项目(2011CDB052)
摘    要:针对现实网络攻防环境中防御措施的滞后性以及攻防对抗过程中双方收益不完全相等的问题,提出一种基于非零和博弈的主动防御策略选取方法。首先依据攻击者与系统的博弈关系,结合网络安全问题实际情况提出网络安全博弈图;其次在此基础上给出一种基于非零和博弈的网络攻防博弈模型,结合主机重要度以及防御措施成功率计算单一安全属性攻防收益值,进而根据攻防意图对整体攻防收益进行量化;最后通过分析纳什均衡得到最优主动防御策略。实例验证了该方法在攻击行为预测和主动防御策略选取方面的有效性和可行性。

关 键 词:网络安全  攻防模型  非零和博弈  主动防御  策略选取  
收稿时间:2012-10-12
修稿时间:2012-12-04

Active defense strategy selection based on non-zero-sum attack-defense game model
CHEN Yongqiang FU Yu WU Xiaoping.Active defense strategy selection based on non-zero-sum attack-defense game model[J].journal of Computer Applications,2013,33(5):1347-1352.
Authors:CHEN Yongqiang FU Yu WU Xiaoping
Affiliation:Department of Information Security, Naval University of Engineering, Wuhan Hubei 430033, China
Abstract:In order to deal with the problems that defensive measures are lagging behind the attack and that the payoffs of attacker and defender are unequal, an active strategy selection method based on non-zero-sum game was proposed. Firstly, a network security game graph was presented combined with the actual situation of network security and the relationship between the attacker and the defender. Secondly, a network attack-defense game model was proposed based on non-zero-sum game. The attack-defense cost of single security attribute was calculated combined with the host important degree and success rate of defense measures, and according to attack-defense intention, the total attack-defense cost was quantified. Finally, the best strategy for defender was obtained by analyzing the Nash equilibrium of the game model. A representative example was given to illustrate the efficacy and feasibility of the method on attack prediction and active defense strategy selection.
Keywords:network security                                                                                                                          attack-defense model                                                                                                                          non-zero-sum game                                                                                                                          active defense                                                                                                                          strategy selection
点击此处可从《计算机应用》浏览原始摘要信息
点击此处可从《计算机应用》下载全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号