DOI: 10.1007/978-3-642-34266-0_13
关键词: Intelligence gathering 、 Dynamic asset allocation 、 Distributed computing 、 Asset (computer security) 、 Mechanism (biology) 、 Space (commercial competition) 、 Computer science
摘要: We propose a means for evaluating the strength of network-based moving target defenses using general model tag switching. Tag switching breaks network into tags (labels entities on network) and assets (hosts present whose relationshps are moderated by lookup protocols, such as DNS, ARP or BGP. Lookup protocols hide relationship between assets, already used to provide dynamic asset allocation scaling defense. Our provides generalize describing within spaces defined defender then quantifies attacker’s ability manipulate space. Defenders tag/asset over time one number defenses. The impact these is quantifiable can be determine how effective different defensive postures will be.