Near Optimal Network Defense Resource Allocation Policies for Maximization of Network Survivability
碩士 === 國立臺灣大學 === 資訊管理學研究所 === 95 === Due to the decreasing cost of computer hardware and the increasing capacity of computer software, most critical networks are being progressively computerized. If one of these systems were to fail, it would not only cause extreme inconvenience in our daily lives,...
Main Authors: | , |
---|---|
Other Authors: | |
Format: | Others |
Language: | en_US |
Online Access: | http://ndltd.ncl.edu.tw/handle/22735670310048422645 |
id |
ndltd-TW-095NTU05396040 |
---|---|
record_format |
oai_dc |
spelling |
ndltd-TW-095NTU053960402015-12-07T04:04:12Z http://ndltd.ncl.edu.tw/handle/22735670310048422645 Near Optimal Network Defense Resource Allocation Policies for Maximization of Network Survivability 達成網路存活性最大化之近似最佳化網路防禦資源配置策略 Ya-Fang Wen 溫雅芳 碩士 國立臺灣大學 資訊管理學研究所 95 Due to the decreasing cost of computer hardware and the increasing capacity of computer software, most critical networks are being progressively computerized. If one of these systems were to fail, it would not only cause extreme inconvenience in our daily lives, but could even have catastrophic or fatal consequences. Thus, how to assess and evaluate the survivability of a system effectively is a crucial issue in the field of information security. In this thesis, we propose a simple and novel metric of network survivability, called Degree of Separation (DOS). DOS is a survivability metric used to measure the average damage level of a system; naturally, the larger the DOS value, the more serious the network damage will be. If the DOS value is larger than a pre-established threshold, we say that the network has been compromised. We express the scenario of network attack-defense as a mathematical linear programming model to near-optimize the resource allocation policies. In the process of problem solving, we adopt the concept of DOS to assess the network survivability and use the Lagrangean Relaxation method and the subgradient method to approach the optimal solution. Finally, based on the experiment results, not only can the 3-stage selection (3SS) attack algorithm we proposed evaluate the attack cost effectively, but are the results of different defense budget allocation policies to different network topologies quite significant. 林永松 學位論文 ; thesis 89 en_US |
collection |
NDLTD |
language |
en_US |
format |
Others
|
sources |
NDLTD |
description |
碩士 === 國立臺灣大學 === 資訊管理學研究所 === 95 === Due to the decreasing cost of computer hardware and the increasing capacity of computer software, most critical networks are being progressively computerized. If one of these systems were to fail, it would not only cause extreme inconvenience in our daily lives, but could even have catastrophic or fatal consequences. Thus, how to assess and evaluate the survivability of a system effectively is a crucial issue in the field of information security.
In this thesis, we propose a simple and novel metric of network survivability, called Degree of Separation (DOS). DOS is a survivability metric used to measure the average damage level of a system; naturally, the larger the DOS value, the more serious the network damage will be. If the DOS value is larger than a pre-established threshold, we say that the network has been compromised.
We express the scenario of network attack-defense as a mathematical linear programming model to near-optimize the resource allocation policies. In the process of problem solving, we adopt the concept of DOS to assess the network survivability and use the Lagrangean Relaxation method and the subgradient method to approach the optimal solution.
Finally, based on the experiment results, not only can the 3-stage selection (3SS) attack algorithm we proposed evaluate the attack cost effectively, but are the results of different defense budget allocation policies to different network topologies quite significant.
|
author2 |
林永松 |
author_facet |
林永松 Ya-Fang Wen 溫雅芳 |
author |
Ya-Fang Wen 溫雅芳 |
spellingShingle |
Ya-Fang Wen 溫雅芳 Near Optimal Network Defense Resource Allocation Policies for Maximization of Network Survivability |
author_sort |
Ya-Fang Wen |
title |
Near Optimal Network Defense Resource Allocation Policies for Maximization of Network Survivability |
title_short |
Near Optimal Network Defense Resource Allocation Policies for Maximization of Network Survivability |
title_full |
Near Optimal Network Defense Resource Allocation Policies for Maximization of Network Survivability |
title_fullStr |
Near Optimal Network Defense Resource Allocation Policies for Maximization of Network Survivability |
title_full_unstemmed |
Near Optimal Network Defense Resource Allocation Policies for Maximization of Network Survivability |
title_sort |
near optimal network defense resource allocation policies for maximization of network survivability |
url |
http://ndltd.ncl.edu.tw/handle/22735670310048422645 |
work_keys_str_mv |
AT yafangwen nearoptimalnetworkdefenseresourceallocationpoliciesformaximizationofnetworksurvivability AT wēnyǎfāng nearoptimalnetworkdefenseresourceallocationpoliciesformaximizationofnetworksurvivability AT yafangwen dáchéngwǎnglùcúnhuóxìngzuìdàhuàzhījìnshìzuìjiāhuàwǎnglùfángyùzīyuánpèizhìcèlüè AT wēnyǎfāng dáchéngwǎnglùcúnhuóxìngzuìdàhuàzhījìnshìzuìjiāhuàwǎnglùfángyùzīyuánpèizhìcèlüè |
_version_ |
1718146442778902528 |