Reputation-based service migration for moving target defense

Yanjun Zuo
{"title":"Reputation-based service migration for moving target defense","authors":"Yanjun Zuo","doi":"10.1109/EIT.2016.7535247","DOIUrl":null,"url":null,"abstract":"As a proactive security approach, service migration can be used as a mechanism for moving target defense. By strategically moving services to different platforms, the system changes the service locations and the underlying platform configurations so that potential attackers cannot identify and target those services. This form of moving target increases the barriers for the attackers and make the system more unpredictable for outsiders. In this paper, we present a reputation-based service migration scheme to select the destination platform for each service to migrate periodically or on-demand. In a system where the platforms have different levels of security, quality, reliability, and communication capability to support user services, it is pertinent to choose the appropriate platform for each service as the new hosting infrastructure. The ability and quality of each platform to support user services is reflected on its reputation as evaluated by a set of agents in the system. The reputation of a platform is assessed based on a set of categorical factors. For each factor, a category reputation is determined from the perspective of that factor. We use a transferable belief-based model to combine multiple agents' opinions towards a platform's category reputation. Those category reputations are then aggregated to the overall reputation of the platform. Given the reputations of different platforms in the system, a service is to migrate to a platform with a high level of reputation.","PeriodicalId":333489,"journal":{"name":"2016 IEEE International Conference on Electro Information Technology (EIT)","volume":"60 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2016-08-08","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"3","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2016 IEEE International Conference on Electro Information Technology (EIT)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/EIT.2016.7535247","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 3

Abstract

As a proactive security approach, service migration can be used as a mechanism for moving target defense. By strategically moving services to different platforms, the system changes the service locations and the underlying platform configurations so that potential attackers cannot identify and target those services. This form of moving target increases the barriers for the attackers and make the system more unpredictable for outsiders. In this paper, we present a reputation-based service migration scheme to select the destination platform for each service to migrate periodically or on-demand. In a system where the platforms have different levels of security, quality, reliability, and communication capability to support user services, it is pertinent to choose the appropriate platform for each service as the new hosting infrastructure. The ability and quality of each platform to support user services is reflected on its reputation as evaluated by a set of agents in the system. The reputation of a platform is assessed based on a set of categorical factors. For each factor, a category reputation is determined from the perspective of that factor. We use a transferable belief-based model to combine multiple agents' opinions towards a platform's category reputation. Those category reputations are then aggregated to the overall reputation of the platform. Given the reputations of different platforms in the system, a service is to migrate to a platform with a high level of reputation.
基于声誉的移动目标防御服务迁移
作为一种主动的安全方法,服务迁移可以用作移动目标防御的机制。通过战略性地将服务移动到不同的平台,系统可以更改服务位置和底层平台配置,以便潜在的攻击者无法识别和瞄准这些服务。这种形式的移动目标增加了攻击者的障碍,使系统对外部人员来说更加不可预测。在本文中,我们提出了一种基于声誉的服务迁移方案,为每个服务选择目标平台进行定期或按需迁移。在平台具有不同级别的安全性、质量、可靠性和通信能力以支持用户服务的系统中,为每个服务选择适当的平台作为新的托管基础设施是相关的。每个平台支持用户服务的能力和质量反映在其声誉上,并由系统中的一组代理进行评估。平台的声誉是基于一组分类因素来评估的。对于每个因素,从该因素的角度确定一个类别的声誉。我们使用可转移的基于信念的模型来组合多个代理对平台类别声誉的意见。然后,这些类别的声誉被汇总为平台的整体声誉。给定系统中不同平台的声誉,服务将迁移到具有较高声誉的平台。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信