基于动态对等网层次结构的网络预警模型研究
文献类型:期刊论文
作者 | 许佳 ; 冯登国 ; 苏璞睿 |
刊名 | 计算机研究与发展
![]() |
出版日期 | 2010 |
卷号 | 47期号:9页码:1574-1586 |
关键词 | 恶意代码 网络预警 协同安全 对等覆盖网 分布式共享Computer crime Distributed computer systems Heterogeneous networks Internet Network security |
ISSN号 | 1000-1239 |
其他题名 | research on network-warning model based on dynamic peer-to-peer overlay hierarchy |
中文摘要 | 借助恶意代码快速传播搭建的分布式平台对互联网实施大规模入侵,已经成为网络安全领域的热点问题."协同安全"是应对恶意代码分布式攻击的必然趋势,因此提出了一个基于动态对等网层次结构的网络预警模型.该模型的体系结构包含自上而下的两层对等覆盖网和4类节点角色,可以有效地整合网络中各种异构安全防护设施的数据和资源,并且使网络安全防护体系具备了动态自适应调整和跨安全域协作的能力.初步实验表明,该模型不仅可以进行报警消息聚合和关联分析、攻击场景图的生成和实施一定的主动防护,并且具备良好的鲁棒性、扩展性和可管理性. |
学科主题 | Computer Science |
语种 | 中文 |
公开日期 | 2011-05-23 |
附注 | The increasing array of invasions against Internet, which are implemented through the distributed platform fabricated by rapid diffusion of malwares, such as worm and botnet, has become a hotspot of network security research. Traditional network warning models have inefficient infrastructure to integrate widely scattering data and computational resources, leading to incompetence in detecting and preventing Internet-scale threats. In this paper, the notion of ″collaborative security″ is addressed to be an inevitable approach to resist Internet-scale attacks originated from widely spreading malwares. Therefore, a novel network-warning model based on dynamic peer-to-peer overlay hierarchy has been proposed. The infrastructure of this model has a two-level dynamic P2P overlay hierarchy, which consists of four roles of peers from the top downward and endues the global network defense framework with the ability of self-adaptive adjustment and collaboration across various security domains. As a fundamental characteristic of this model, a compatible XML-based distributed message sharing method is also presented, which effectively integrates the data resources of heterogeneous network security facilities. The result of preliminary experiments based on a proof-of-concept prototype system demonstrates that this model not only carries out alert message aggregation, correlated analysis, attack scenario generation and implementation of active defense mechanism with improved performance and accuracy, but also has prominant robustness, scalability and manageability. |
源URL | [http://124.16.136.157/handle/311060/9886] ![]() |
专题 | 软件研究所_信息安全国家重点实验室_期刊论文 |
推荐引用方式 GB/T 7714 | 许佳,冯登国,苏璞睿. 基于动态对等网层次结构的网络预警模型研究[J]. 计算机研究与发展,2010,47(9):1574-1586. |
APA | 许佳,冯登国,&苏璞睿.(2010).基于动态对等网层次结构的网络预警模型研究.计算机研究与发展,47(9),1574-1586. |
MLA | 许佳,et al."基于动态对等网层次结构的网络预警模型研究".计算机研究与发展 47.9(2010):1574-1586. |
入库方式: OAI收割
来源:软件研究所
浏览0
下载0
收藏0
其他版本
除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。