摘要
针对复杂网络空间对抗条件下提升信息服务系统动态主动防御能力的需求,基于动目标防御思想提出了一种跳变信息服务系统架构及构建方法。首先利用多态化的软件栈模板构建出由不同异构虚拟服务器组成的服务器池;然后,通过审计清洗、服务请求调度、服务器动态管控等模块之间的交互控制,实现根据各虚拟服务器的状态信息和负载情况进行服务请求调度和服务器状态切换,在保证服务质量的前提下使得信息服务系统随时间动态、随机地变化。
Facing more and more threats from the cyberspace, it has become significant to improve the active and dynamic defense capacity of information service system. Based on the concept of moving target defense, the architecture and construction method for hopping information service system is proposed. Firstly, the server pool consisting of heterogeneous virtual servers is constructed using templates of diverse software stacks. Further, according to the status and load of the virtual server, request scheduling and status switching are implemented by coordination of audit and clean module, request scheduling module, together with dynamic management module. Then the information service system can hop dynamically and randomly over time, with assurance of quality of service.
作者
赵鑫
ZHAO Xin(Science and Technology on Information Systems Engineering Laboratory, Nanjing 21007, Chin)
出处
《软件》
2018年第3期204-208,共5页
Software
关键词
动目标防御
跳变信息服务
网络空间安全
Moving target defense
Hopping information service
Cyberspace security