首页 | 本学科首页   官方微博 | 高级检索  
     检索      

基于危险理论的自动入侵响应系统模型
引用本文:彭凌西,谢冬青,付颖芳,熊 伟,沈玉利.基于危险理论的自动入侵响应系统模型[J].通信学报,2012(1):136-144.
作者姓名:彭凌西  谢冬青  付颖芳  熊 伟  沈玉利
作者单位:广州大学计算机科学与教育软件学院;网络与数据安全四川省重点实验室;北京工业大学计算机学院;仲恺农业工程学院计算机科学与工程学院
基金项目:国家自然科学基金资助项目(61100150);广东省自然科学基金资助项目(S2011040004528,10451009101004574)~~
摘    要:提出了一种基于危险理论的自动入侵响应系统模型(AIRSDT),对网络活动中自体、非自体、免疫细胞、记忆检测器、成熟检测器和未成熟检测器进行了形式化描述,建立了主机和网络实时危险定量计算方程,并根据主机和网络当前所面临攻击的各类攻击和总体网络危险强度,自动调整入侵响应策略。理论分析和实验结果充分表明,模型有助于解决自动入侵响应研究中难以判断真正"危险"的入侵或者攻击行为的问题,降低入侵响应次数和响应综合代价。

关 键 词:危险理论  自动入侵响应系统  网络实时危险评估  人工免疫

Automated intrusion response system model based on danger theory
PENG Ling-xi,XIE Dong-qing,FU Ying-fang,XIONG Wei,SHEN Yu-li.Automated intrusion response system model based on danger theory[J].Journal on Communications,2012(1):136-144.
Authors:PENG Ling-xi  XIE Dong-qing  FU Ying-fang  XIONG Wei  SHEN Yu-li
Institution:1.Department of Computer and Education Software,Guangzhou Univ.,Guangzhou 510006,China; 2.Network and Data Security Key Laboratory of Sichuan Province,Chengdu 611731,China; 3.College of Computer Science and Technology,Beijing University of Technology,Beijing 100124,China; 4.College of Computer Science and Engineering,Zhongkai University of Agriculture,Guangzhou 510225,China)
Abstract:A novel automated response system model based on the danger theory(AIRSDT) was given.With the descrip-tions of self,non-self,immunocyte,memory detector,mature detector and immature detector of the network transactions,network danger evaluation equations for host and network were built up.Then,the automated response actions were taken or adjusted according to the danger of each network attack,including holistic risk degrees of the host and network.Both the theory analysis and experimental results prove that AIRSDT not only helps to solve the problem that the current automated response models could not detect the ’true’ intrusion or attack action,but also greatly reduces the response times and response cost.
Keywords:danger theory  automated intrusion response system  real-time network risk evaluation  artificial immune
本文献已被 CNKI 等数据库收录!
点击此处可从《通信学报》浏览原始摘要信息
点击此处可从《通信学报》下载免费的PDF全文
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号