Feedback control applied to survivability: a host-based autonomic defense system (2002)
| Venue: | IEEE Transactions on Reliability |
| Citations: | 15 - 0 self |
BibTeX
@ARTICLE{Kreidl02feedbackcontrol,
author = {O. Patrick Kreidl and Student Member and Tiffany M. Frazier},
title = {Feedback control applied to survivability: a host-based autonomic defense system},
journal = {IEEE Transactions on Reliability},
year = {2002},
volume = {52},
pages = {148--166}
}
Years of Citing Articles
OpenURL
Abstract
Abstract—We address the problem of information system survivability, or dynamically preserving intended functionality & computational performance, in the face of malicious intrusive activity. A feedback control approach is proposed which enables tradeoffs between the failure cost of a compromised information system and the maintenance cost of ongoing defensive countermeasures. Online implementation features an inexpensive computation architecture consisting of a sensor-driven recursive estimator followed by an estimate-driven response selector. Offline design features a systematic empirical procedure utilizing a suite of mathematical modeling and numerical optimization tools. The engineering challenge is to generate domain models and decision strategies offline via tractable methods, while achieving online effectiveness. We illustrate the approach with experimentation results for a prototype autonomic defense system which protects its host, a Linux-based web-server, against an automated Internet worm attack. The overall approach applies to other types of computer attacks, network-level security and other domains which could benefit from automatic decision-making based on a sequence of sensor measurements. Index Terms—Computer security, empirical methods, intrusion tolerance, Markovian processes, numerical optimization, sensor uncertainty, stochastic control, survivable systems.







