Proactive recovery approach for intrusion tolerance with dynamic configuration of physical and virtual replicas

Proactive recovery approach for intrusion tolerance with dynamic configuration of physical and virtual replicas
复制标题

通过物理和虚拟副本的动态配置实现入侵容忍的主动恢复方法

DOI:
10.1002/sec.423
复制
发表时间:
2012
期刊:
Secur. Commun. Networks
影响因子:
--
通讯作者:
Qin Zhang
Qin Zhang
中科院分区:
--
文献类型:
--
作者:
Feng Zhao;Min Li;Weizhong Qiang;Hai Jin;Deqing Zou;Qin Zhang

文献摘要

相似文献

主动恢复机制被广泛应用于构建能够容忍任意数量故障的容错系统。但是,以往的主动恢复方法很少考虑攻击能力的动态性,可能导致故障率的增加,导致业务的可用性得不到保证。本文描述了一种通过动态配置物理和虚拟副本来容忍入侵,或者更准确地说,容忍复制数据损坏的方法,该方法遵循一种称为主动恢复的一般方法,并提出动态调整恢复频率以处理潜在变化的故障率。这种动态主动恢复方法考虑了连接功率的动态变化,避免/最小化了入侵的影响。我们的方法在物理副本的入侵容忍方面特别有效和有用:它在恢复阶段动态地提供虚拟副本。版权所有©2012 John Wiley & Sons, Ltd。
Proactive recovery mechanism has been widely used in building intrusion-tolerant systems that are able to tolerate an arbitrary number of faults. However, previous proactive recovery methods seldom consider the dynamic in attacking power that may cause the increase in fault rate, resulting unguaranteed service availability. This paper describes an approach for tolerating intrusions, or more precisely, damages to replicated data, through dynamic configuration of physical and virtual replicas, which follows a general approach called proactive recovery, and proposes to dynamically adjust recovery frequency to handle potentially changing fault rate. This dynamic proactive recovery method takes the dynamic changes of attaching power into consideration to avoid/minimize the effect of intrusions. Our method is especially effective and useful in intrusion tolerance with physical replicas: it dynamically provides virtual replicas during rejuvenation phase. Copyright © 2012 John Wiley & Sons, Ltd.