摘要
针对事务和数据的实时特性,给出了具有入侵容忍能力的实时数据库系统的体系架构.基于实时性的要求和入侵检测存在的延迟,提出了半马尔可夫评价模型,对实时数据库在入侵容忍条件下的生存能力进行评价,并根据此模型给出相关的量化准则,定义了完整性与可用性等生存性指标,对实时数据库的生存能力进行了验证.由于误报、检出率和攻击强度等因素会对生存能力造成重大影响,因此利用TPC-C基准测试对其进行了详细的数据分析.实验表明,该模型能较准确地预测实时数据库的行为,所提出的入侵容忍实时数据库在面临攻击时,其基本生存能力没有受到严重的影响.
Based on the real-time features of transactions and data,an intrusion tolerant architecture is proposed for the real-time database system.Considering real-time parameters and intrusion detection latency,Semi-Markov evaluation model is established to access the survivability of real-time database.Based on this model,relevant quantitative criteria are given to define the indicators of the survivability,such as integrity and availability,so as to validate the survivability of real-time database.Because the factors such as false alarm,detection rate and the intensity of attacks have important effects on the survivability,they are analyzed by the TPC-C benchmark in detail.Experiments show that the model can accurately predict the behaviors of real-time database.The proposed real-time database with intrusion tolerance can still keep the basic survival when facing attacks.
出处
《计算机学报》
EI
CSCD
北大核心
2011年第10期1907-1916,共10页
Chinese Journal of Computers
基金
中央高校基本科研业务费专项资金(2010MS061)资助~~
关键词
入侵容忍
实时数据库
生存性
评价模型
intrusion tolerance
real-time database
survivability
evaluation model