Building a distributed security defence system

被引:0
作者
Daskapan, S [1 ]
Vree, WG [1 ]
Sol, HG [1 ]
机构
[1] Delft Univ Technol, Delft, Netherlands
来源
2004 IEEE INTERNATIONAL CONFERENCE ON SYSTEMS, MAN & CYBERNETICS, VOLS 1-7 | 2004年
关键词
fault tolerance; self-organization; trust management; security; immune system; mobile agent;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Given the complexity of infrastructures current state of security technology and the limited budgets any security defense systems can be outnumbered by a sufficient number of random sequential failures, e.g. due to multiple DOS attacks. Complementary to the regular solutions where per node several identical dedicated nodes are added (i.e. redundants), a resource sharing approach between undedicated nodes is aimed to build a large scale cluster of redundants and approximate perpetual availability of security distributing nodes. In this paper principles are acquired from related and unrelated fields to build a distributed defense system (DDS) that relies on resource sharing. The proposed protocol set, called Medusa, achieves this DDS by dissociating trust authority from identity and hardware, making trust a moveable emancipated commodity. As a moveable object trust can apply traditional fault tolerance techniques by process migration.
引用
收藏
页码:4064 / 4071
页数:8
相关论文
共 23 条
[1]   DESIGNING A PROCESS MIGRATION FACILITY - THE CHARLOTTE EXPERIENCE [J].
ARTSY, Y ;
FINKEL, R .
COMPUTER, 1989, 22 (09) :47-56
[2]   A GENERAL, CONSTRUCTIVE APPROACH TO FAULT-TOLERANT DESIGN USING REDUNDANCY [J].
BARBOUR, AE ;
WOJCIK, AS .
IEEE TRANSACTIONS ON COMPUTERS, 1989, 38 (01) :15-29
[3]   Defending against flooding-based distributed denial-of-service attacks: A tutorial [J].
Chang, RKC .
IEEE COMMUNICATIONS MAGAZINE, 2002, 40 (10) :42-51
[4]   A BUTLER PROCESS FOR RESOURCE SHARING ON SPICE MACHINES [J].
DANNENBERG, RB ;
HIBBARD, PG .
ACM TRANSACTIONS ON OFFICE INFORMATION SYSTEMS, 1985, 3 (03) :234-252
[5]  
Dasgupta P, 1988, Trust: Making and Breaking Cooperative Relations, P49
[6]  
DASKAPAN S, 2002, 5 INT C COMP INF TEC, P553
[7]  
DASKAPAN S, 2004, INT C TRUST PRIV DIG
[8]  
Daskapan S, 2003, P IEEE INT C SYST MA
[9]  
DASKAPAN S, 2001, P 6 EURAS WORKSH NET, P45
[10]  
Dawkins R, 1989, SELFISH GENE