ScienceDirect® Home Skip Main Navigation Links
You have guest access to ScienceDirect. Find out more.
 
Home
Browse
My Settings
Alerts
Help
 Quick Search
 Search tips (Opens new window)
    Clear all fields    
Performance Evaluation
Volume 56, Issues 1-4, March 2004, Pages 167-186
Dependable Systems and Networks - Performance and Dependability Symposium (DSN-PDS) 2002: Selected Papers
 
Font Size: Decrease Font Size  Increase Font Size
 Abstract - selected
Article
Purchase PDF (587 K)

Article Toolbox
 
 
 
Related Articles in ScienceDirect
View More Related Articles
 
View Record in Scopus
 
doi:10.1016/j.peva.2003.07.008    
How to Cite or Link Using DOI (Opens New Window)

Copyright © 2003 Published by Elsevier Science B.V.

A method for modeling and quantifying the security attributes of intrusion tolerant systems*1

Purchase the full-text article



References and further reading may be available for this article. To view references and further reading you must purchase this article.

Bharat B. MadanCorresponding Author Contact Information, E-mail The Corresponding Author, a, Katerina GoImage eva-PopstojanovaE-mail The Corresponding Author, b, Kalyanaraman VaidyanathanE-mail The Corresponding Author, c and Kishor S. TrivediE-mail The Corresponding Author, a

a Department of Electrical and Computer Engineering, Duke University, Durham, NC 27708, USA

b Lane Department of Computer Science and Electrical Engineering, West Virginia University, Morgantown, WV 26506, USA

c RAS Computer Analysis Laboratory, Sun Microsystems, Inc., 9515 Towne Centre Drive, USAN 10-103, San Diego, CA 92121, USA


Available online 20 October 2003.

Abstract

Complex software and network based information server systems may exhibit failures. Quite often, such failures may not be accidental. Instead some failures may be caused by deliberate security intrusions with the intent ranging from simple mischief, theft of confidential information to loss of crucial and possibly life saving services. Not only it is important to prevent and/or tolerate security intrusions, it is equally important to treat security as a QoS attribute at par with other QoS attributes such as availability and performance. This paper deals with various issues related to quantifying the security attributes of an intrusion tolerant system, such as the SITAR system. A security intrusion and the response of an intrusion tolerant system to an attack is modeled as a random process. This facilitates the use of stochastic modeling techniques to capture the attacker behavior as well as the system’s response to a security intrusion. This model is used to analyze and quantify the security attributes of the system. The security quantification analysis is first carried out for steady-state behavior leading to measures like steady-state availability. By transforming this model to a model with absorbing states, we compute a security measure called the “mean time (or effort) to security failure” (MTTSF) and also compute probabilities of security failure due to violations of different security attributes.

Author Keywords: Intrusion tolerance; Security attributes; QoS; MTTSF; Semi Markov model

Article Outline

1. Introduction
1.1. Related work
1.2. Intrusion tolerance versus fault tolerance
2. SMP model for security quantification
2.1. Generic state transition model
2.2. Attacker’s behavior and system’s response
2.3. Security attributes
3. Irreducible SMP—availability analysis
3.1. DTMC steady-state probability computations
3.2. Semi-Markov model analysis
3.2.1. Model of a SYN-flood DoS attack
4. SMP with absorbing states—MTTSF analysis
5. Numerical results
6. Conclusions and future work
References






Corresponding Author Contact InformationCorresponding author.

*1 This work is sponsored by the US Department of Defense Advanced Research Projects Agency (DARPA) under contract No. 66001-00-C-8057 from the Space and Naval Warfare Systems Center, San Diego (SPAWARSYSCEN). Katerina GoImage eva-Popstojanova is funded in part by a grant from the NASA Office of Safety and Mission Assurance (OSMA), Software Assurance Research Program (SARP) managed through the NASA Independent Verification and Validation (IV and V) Facility, Fairmont, West Virginia. The views, opinions and findings contained in this paper are those of the authors and should not be construed as official DARPA or SPAWARSYSCENs positions, policy or decision.


Performance Evaluation
Volume 56, Issues 1-4, March 2004, Pages 167-186
Dependable Systems and Networks - Performance and Dependability Symposium (DSN-PDS) 2002: Selected Papers
 
Home
Browse
My Settings
Alerts
Help
Elsevier.com (Opens new window)
About ScienceDirect  |  Contact Us  |  Information for Advertisers  |  Terms & Conditions  |  Privacy Policy
Copyright © 2008 Elsevier B.V. All rights reserved. ScienceDirect® is a registered trademark of Elsevier B.V.