| 本文已被:浏览 4730次 下载 8253次 |
 码上扫一扫! |
|
|
| 一种给定脆弱性环境下的安全措施效用评估模型 |
|
吴迪1,2,3, 冯登国1, 连一峰1,4, 陈恺1
|
|
1.中国科学院 软件研究所 信息安全国家重点实验室,北京 100190;2.中国科学院 研究生院 信息安全国家重点实验室,北京 100049;3.信息网络安全公安部重点实验室(公安部第三研究所),上海 201204;4.信息安全共性技术国家工程研究中心,北京 100190
|
|
| 摘要: |
| 评估信息系统安全措施效用是改进系统信息安全绩效的一条重要途径.传统方法在评估安全措施效用时并没有考虑业务数据流、攻击流和安全措施要素之间的相互作用和影响,无法保证评估过程和结果的有效性.提出了一种给定脆弱性环境下的信息系统安全措施效用评估方法,应用颜色Petri 网为系统业务数据流、攻击流和安全措施要素进行统一建模.通过设计节点间脆弱性利用图生成算法和改进的Dijkstra 算法识别所有可能破坏信息系统安全属性的最短攻击路径,使用层次评价模型评估系统安全措施的效用.给出了一种基于多属性决策的系统最优信息安全效用提升方案选择算法.改善评估过程对人员主观经验的依赖问题,有助于保证评估结果的一致性和可追溯性.以一个具体的Web 业务系统为例进行实验,验证了所提出的模型和方法的正确性和有效性. |
| 关键词: 信息安全措施 效用评估 颜色Petri 网 最短攻击路径 多属性决策 |
| DOI:10.3724/SP.J.1001.2012.04112 |
| 分类号: |
| 基金项目:国家自然科学基金(61100226); 国家高技术研究发展计划(863)(2009AA01Z439, 2011AA01A203); 北京市自然科学基金(4122085); 信息网络安全公安部重点实验室(公安部第三研究所)开放基金(C10606) |
|
| Efficiency Evaluation Model of System Security Measures in the Given Vulnerabilities Set |
|
WU Di1,2,3, FENG Deng-Guo1, LIAN Yi-Feng1,4, CHEN Kai1
|
|
1.State Key Laboratory of Information Security, Institute of Software, The Chinese Academy of Sciences, Beijing 100190, China;2.State Key Laboratory of Information Security, Graduate University, The Chinese Academy of Sciences, Beijing 100049, China;3.Key Labor;4.National Engineering Research Center for Information Security, Beijing 100190, China
|
| Abstract: |
| The efficiency evaluation of information system’s security measures is important to improve the information system security. Conventional evaluation methods did not consider the interactivity and inter-influence of the business dataflow, attack flow, and security measures factors when evaluating system’s security measures. Thus, they can not ensure the effectiveness of the evaluation process and results. An efficiency evaluating approach for information system’s security measures under the given vulnerability set is presented in this paper. It employs colored Petri-Net tools to uniform modeling and simulates the interaction among the system’s workflow, attack flow, and security measures. Based on this modeling method, the paper proposes an inter-nodes vulnerabilities exploiting graph generation algorithm and improves Dijkstra algorithm to identify shortest-attack-paths, which can cause damage to the information system’s security attributes. Next, it constructs a hierarchical model to evaluate the effectiveness of the security measures and employs a gray multiple attributes decision-making algorithm to choose the best effectiveness-improving alternatives. By using this approach, the dependency on evaluators’ subjectivity in the process of the evaluation of information system’s security measures can be alleviated. Also, it helps to ensure the consistency and traceability of the evaluation results. Finally, a practical Web business system is taken as a case study to validate the correctness and effectiveness of the evaluation model. |
| Key words: information security measures efficiency evaluation colored Petri net shortest-attack-path multiple attributes decision-making |