摘要
提出了一种基于嵌入式马尔可夫链的解析排队模型来分析和研究基于一定准则的防火墙在面对正常流量和DoS攻击时的性能。基于这种排队模型,得到了一组关于防火墙特征和性能的指标计算方法,这对防火墙的设计来说具有重要意义。同时还提出了一种易于实现的算法来得到这种马尔可夫链模型的状态概率,对防火墙的状态和性能也作了深入的分析。最后通过实验分析验证了提出的解析模型的有效性。
This paper presented an analytical queueing model based on the embedded Markov chain to study and analyze the performance of rule-based firewalls when subjected to normal traffic flows as well as DoS attack flows. It derived equations for key features and performance measures of engineering and design significance. Moreover, it proposed an algorithm easy to be implemented to derivate the state probability of the analytic model. In addition, it verified and validated this analytical model using simulation and real experimental measurements.
出处
《计算机应用研究》
CSCD
北大核心
2014年第5期1491-1494,1498,共5页
Application Research of Computers
基金
河南省科技攻关计划资助项目(A13060232)
河南省科技厅计划资助项目(132400411191)
关键词
网络防火墙
性能建模
排队论
马尔可夫链
network firewall
performance modeling
queueing theory
Markov chain