首页 | 本学科首页   官方微博 | 高级检索  
     

一种基于执行体异构度的拟态裁决优化方法
引用本文:武兆琪,张帆,郭威,卫今,谢光伟. 一种基于执行体异构度的拟态裁决优化方法[J]. 计算机工程, 2020, 46(5): 12-18
作者姓名:武兆琪  张帆  郭威  卫今  谢光伟
作者单位:国家数字交换系统工程技术研究中心,郑州450001;复旦大学计算机科学技术学院,上海200433;复旦大学大数据试验场研究院,上海200433
基金项目:上海市信息化发展专项;国家自然科学基金
摘    要:网络空间拟态防御技术通过构建动态异构冗余的系统架构来提高系统的安全性能,而裁决器的表决机制是防御链中的关键步骤,直接影响拟态系统的安全性和效率。针对拟态表决环节的任务特性,对一致表决算法进行改进,设计基于执行体异构度的拟态裁决优化方法。结合拟态防御系统的异构特性,在选择执行体表决输出时引入执行体间的异构度作为决策因素,同时综合考虑执行体数目和历史记录信息,使表决算法更适用于拟态架构面临的威胁场景。实验结果表明,与一致表决算法相比,该算法能够显著提高拟态系统的安全性能,有效规避共模逃逸的风险。

关 键 词:拟态防御  异构冗余  裁决器  异构度  表决算法

A Mimic Arbitration Optimization Method Based on Heterogeneous Degree of Executors
WU Zhaoqi,ZHANG Fan,GUO Wei,WEI Jin,XIE Guangwei. A Mimic Arbitration Optimization Method Based on Heterogeneous Degree of Executors[J]. Computer Engineering, 2020, 46(5): 12-18
Authors:WU Zhaoqi  ZHANG Fan  GUO Wei  WEI Jin  XIE Guangwei
Affiliation:(China National Digital Switching System Engineering&Technological R&D Center,Zhengzhou 450001,China;School of Computer Science,Fudan University,Shanghai 200433,China;Data Arena Institute,Fudan University,Shanghai 200433,China)
Abstract:Mimic defense technology in cyberspace builds a dynamic heterogeneous redundant system architecture to improve the security performance of the system.In this procedure of defense,the voting mechanism of the arbiter is an important step which directly affects the security and efficiency of the mimic system.Based on the task characteristics of the voting process,this paper improves the consistent voting algorithm and proposes a mimic arbitration optimization method based on heterogeneous degree of the executors.By combining the heterogeneous characteristics in the mimic defense system,introducing the inter-executor heterogeneity as the decision factor when choosing the executor for voting output,and considering the number of executors and historical records,the voting algorithm is made more applicable to the threat scenarios faced by mimic architecture.Experimental results show that,compared with the consistent voting algorithm,the proposed algorithm can significantly improve the security performance of the mimic system and effectively suppress the risk of common mode escape.
Keywords:mimic defense  heterogeneous redundancy  arbiter  heterogeneous degree  voting algorithm
本文献已被 维普 万方数据 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号