Sensing cloud double-layer network defense system and method based on security situation awareness

A security posture, two-layer network technology, applied in the field of information security, can solve the problem of not being able to deal with sensor double-layer network cooperative attacks

Active Publication Date: 2020-03-24
SHAOXING UNIVERSITY
View PDF2 Cites 10 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

[0008] Aiming at the above defects or improvement needs of the prior art, the present invention provides a sensor cloud two-layer network defense system and method based on security situation awareness, the purpose of which is to capture the diffusion situation of abnormal messages generated by cooperative IDS, and to double-layer PV Tracking and sensing the security situation driven by abnormal messages in the two-layer network, so as to reconfigure the IDS defense strategy based on the double-threshold trigger, thereby solving the technical problem that the existing technology cannot deal with the cooperative attack from the sensor two-layer network

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Sensing cloud double-layer network defense system and method based on security situation awareness
  • Sensing cloud double-layer network defense system and method based on security situation awareness
  • Sensing cloud double-layer network defense system and method based on security situation awareness

Examples

Experimental program
Comparison scheme
Effect test

Embodiment 1

[0106] A sensor cloud two-layer network defense system based on security situation awareness, such as figure 1 shown, including:

[0107] Multiple physical wireless sensor network intrusion detectors (PIDS) for capturing and forwarding anomaly messages, multiple virtual sensor service network intrusion detectors (VIDS) for capturing and forwarding anomalous messages, physical wireless sensor network security situational awareness (PSSA), Virtual Sensing Service Network Security Situational Awareness (VSSA), and Double Layer Security Situational Awareness (DSSA);

[0108] The physical wireless sensor network intrusion detector (PIDS) obeys the Poisson process and is deployed on the cluster head node of the physical wireless sensor network layer (P layer), and its monitoring degree distribution is the same as that of the physical wireless sensor network layer (P layer). ) cluster head nodes have the same degree distribution; the virtual sensor service network intrusion detector...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention discloses a sensing cloud double-layer network defense system and method based on security situation awareness. The system comprises a plurality of physical wireless sensor network intrusion detectors for capturing and forwarding abnormal messages, a plurality of virtual sensing service network intrusion detectors used for capturing and forwarding abnormal messages, a physical wireless sensor network security situation awareness device, a virtual sensing service network security situation awareness device and a double-layer security situation awareness device. The method comprises the following steps: in corresponding sensing time, respectively and simultaneously capturing the dynamic nature of abnormal message propagation of a physical wireless sensor network layer and a virtual sensing service network in the sensing cloud double-layer network, sensing the security situation of the physical wireless sensor network layer and the virtual sensing service network, and defending the physical wireless sensor network layer and the virtual sensing service network according to the security situation. According to the method, the abnormal message is detected through IDS cooperation, and the dynamic change trend of the abnormal message is tracked in the double-layer network, so that the attack situation of the uncertainty threat of the double-layer network is perceived.

Description

technical field [0001] The invention belongs to the field of information security, and more specifically relates to a sensor cloud two-layer network defense system and method based on security situation awareness. Background technique [0002] Sensor cloud technology is a new type of integrated management technology for IoT devices. It plays an important role in improving the efficient use of resources in the Internet of Things. It has been widely used in data distribution of the Internet of Vehicles, agricultural Internet of Things and other fields. The sensorless nodes are connected to the sensor cloud platform through the edge computing nodes to form a sensor cloud system with a double-layer communication link. In this system, the virtual sensor service network carrying computing services and the wireless sensor network with dynamic topology are vulnerable to the double attack of cyber-physical space. The intrusion detection system (IDS) deployed in the two-layer sensor ...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04W4/38H04L29/06H04W12/12H04W12/122
CPCH04W4/38H04L63/1416H04L63/1441H04L63/205H04W12/121
Inventor 王泽宏刘建华沈士根
Owner SHAOXING UNIVERSITY
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products