Intrusion Tolerance for Networked Systems through Two-Level Feedback Control
–arXiv.org Artificial Intelligence
We formulate intrusion tolerance for a system with service replicas as a two-level optimal control problem. On the local level node controllers perform intrusion recovery, and on the global level a system controller manages the replication factor. The local and global control problems can be formulated as classical problems in operations research, namely, the machine replacement problem and the inventory replenishment problem. Based on this formulation, we design TOLERANCE, a novel control architecture for intrusion-tolerant systems. We prove that the optimal control strategies on both levels have threshold structure and design efficient algorithms for computing them. We implement and evaluate TOLERANCE in an emulation environment where we run 10 types of network intrusions. The results show that TOLERANCE can improve service availability and reduce operational cost compared with state-of-the-art intrusion-tolerant systems.
arXiv.org Artificial Intelligence
Jun-5-2024
- Country:
- North America > United States
- Hawaii (0.04)
- Wisconsin > Dane County
- Madison (0.04)
- Pennsylvania > Philadelphia County
- Philadelphia (0.04)
- New York > New York County
- New York City (0.04)
- New Jersey > Hudson County
- Hoboken (0.04)
- Massachusetts > Suffolk County
- Boston (0.04)
- California > San Francisco County
- San Francisco (0.14)
- Europe
- Switzerland (0.04)
- Sweden (0.04)
- Russia (0.04)
- United Kingdom > England
- Cambridgeshire > Cambridge (0.04)
- Portugal > Lisbon
- Lisbon (0.04)
- Asia
- Russia (0.04)
- Middle East
- Jordan (0.04)
- Republic of Türkiye > İzmir Province
- İzmir (0.04)
- North America > United States
- Genre:
- Research Report > New Finding (0.66)
- Industry:
- Information Technology > Security & Privacy (1.00)
- Government > Military (1.00)
- Technology:
- Information Technology
- Security & Privacy (1.00)
- Control Systems (1.00)
- Architecture (1.00)
- Communications > Networks (0.93)
- Artificial Intelligence
- Information Technology