期刊导航

论文摘要

基于混沌的WEB文件分级容侵机制

A Multilevel Intrusion Toleration Mechanism of WEB DocumentsBased on Chaos

作者:张建华(四川大学 计算机学院,四川 成都 610045);刘晓洁(四川大学 计算机学院,四川 成都 610045);李涛(四川大学 计算机学院,四川 成都 610045)

Author:(School of Computer Sci., Sichuan Univ., Chengdu 610041, China);(School of Computer Sci., Sichuan Univ., Chengdu 610041, China);(School of Computer Sci., Sichuan Univ., Chengdu 610041, China)

收稿日期:2007-09-05          年卷(期)页码:2008,40(4):120-125

期刊名称:工程科学与技术

Journal Name:Advanced Engineering Sciences

关键字:容侵;混沌;摘要;签名

Key words:intrusion tolerant; chaos; digest;signature

基金项目:国家863计划项目(2006AA01Z435);国家自然科学基金项目(60573130;60373110);教育部新世纪优秀人才计划项目(NCET-04-0870);国家社会科学基金资助项目(07BTQ013)

中文摘要

为解决WWW系统容侵的效率和安全彼此兼顾、协调的问题,首先根据WEB文件的大小及敏感性对其进行安全等级的划分并设定初始分级系数,并随WEB文件的安全风险情况动态调整。然后利用混沌系统的不确定性和初值敏感性,对WEB文件按照设定的分级系数经用Logistic方程产生出混沌片段并生成安全文件签名。当用户请求的WEB文件的完整性遭到入侵破坏时,系统采取拒绝访问并报警、恢复被篡改的文件等一系列措施进行容侵处理。混沌初值随机产生,由于混沌的初值敏感性,决定了混沌片段的不确定性,入侵者难以伪造由混沌片段生成的文件签名

英文摘要

To solve the problems of relationship between efficiency and security in traditional WWW intrusion tolerant system, a multilevel intrusion toleration mechanism was proposed. First, each web document had corresponding security level which was classified by its size and sensitivity. The initial grading factor was specified and dynamically adjusted by the security risks of web documents. Additionally, by the coefficient of Logistic equation, the uncertainty and initial value sensitivity of chaotic system was used to generate the chaotic fragment and its signature according to the initial grading factor. Even if the integrity of the web documnet requested by user was destroyed, the mechanism can also trigger a series of intrusion toleration oprarions include detecting the intrusion, denying the invalid access, alerting and renewing the system, etc. Because the chaotic intial value was produced randomly and chaotic system had character of initial value sensitivity, the chaotic fragment according to the chaotic intial value was uncertain. The invader was difficult to forged the signature of the chaotic fragment. The experiments showed that the security mechanism can carry a better balance between security and efficiency.

关闭

Copyright © 2020四川大学期刊社 版权所有.

地址:成都市一环路南一段24号

邮编:610065