arrow
返回

Distributed security policy conformance

delete2013-03-01
delete8
delete
OA
AI
M
Mirko Montanari *
E
Ellick Chan
K
Kevin Larson
W
Wucherl Yoo
R
Roy H. Campbell
DOI:10.1016/j.cose.2012.11.007delete
delete原文链接
delete分享
delete收藏
查看原文
摘要

摘要

En 中文
Security policy conformance is a crucial issue in large-scale critical cyber-infrastructure. The complexity of these systems, insider attacks, and the possible speed of an attack on a system necessitate an automated approach to assure a basic level of protection. This paper presents Odessa, a resilient system for monitoring and validating compliance of networked systems to complex policies. To manage the scale of infrastructure systems and to avoid single points of failure or attack, Odessa distributes policy validation across many network nodes. Partial delegation enables the validation of component policies and of liveness at the edge nodes of the network using redundancy to increase security. Redundant distributed servers aggregate data to validate more complex policies. Our practical implementation of Odessa resists Byzantine failure of monitoring using an architecture that significantly increases scalability and attack resistance. (C) 2012 Elsevier Ltd. All rights reserved.
Keyword:
Security
Monitoring
Policy compliance
Policy analysis
Vulnerability analysis
Monitoring integrity
AI总结

AI总结

对已上传原文的论文进行重点信息的提取,主要内容包括:简要概述、研究摘要、背景介绍、关键亮点、图文解析、展望与总结。

期刊

C
Computers and Security
IF:
5.4
论文数:
4.6K
被引数:
1.4W

机构

University of Illinois System 封面图
University of Illinois System
学者数:
6.8W
论文数: 6.2W
被引数: 644