摘要
在信息系统存在入侵时,入侵容忍技术能够最大限度保障关键服务的运行。提出一种自适应容侵系统的体系结构,在节点和系统两个级别上实现入侵容忍,并研究攻击在线诊断及重定向技术,增强系统抵抗攻击的能力。实验结果表明,能够构建具有入侵容忍能力的连续服务系统,并能够在对响应时间要求不太严格但要求不间断运行的系统中得到应用。
Intrusion tolerance technologies guarantee systems provided essential services by the fullest extent when some intrusions sneak into them. Architecture of an intrusion-tolerant system was proposed and intrusion tolerance technologies in node-level and system-level were practiced. Online intrusion diagnosis and redirection technology were researched to harden the system automatically. Experiment results illuminate that system providing service continuously can be set up and applied in the condition that does not require response time strictly but demands continuous implementation.
出处
《通信学报》
EI
CSCD
北大核心
2006年第2期131-136,共6页
Journal on Communications
基金
"十五"国防预研基金资助项目(41315.7.3)~~
关键词
入侵容忍
多样化冗余
选举机制
攻击诊断
intrusion tolerance
diverse redundancy
voting mechanism
intrusion diagnosis