36th Annual Hawaii International Conference on System Sciences, 2003. Proceedings of the (2003)
Big Island, Hawaii
Jan. 6, 2003 to Jan. 9, 2003
Vu A. Ha , Honeywell Technology Center
David J. Musliner , Honeywell Technology Center
All Internet-accessible computing systems are currently faced with incessant threats ranging from simple script- kiddies to highly sophisticated criminal enterprises.In response to these threats,sites must perform extensive intrusion monitoring.This intrusion monitoring can have significant costs in terms of bandwidth,computing power,storage space,and licensing fees.Furthermore,when exploits are detected,the victims must take actions that can consume further resources and compromise their objectives (e.g.,by reducing e-commerce server throughput).In this paper,we explore techniques for modeling the costs and bene .ts of various security monitoring and response actions.Given these models and stochastic expectations about the types of attacks that a site is likely to face,our CIRCADIA automatic security control system is a le to make real-time tradeoffs between the level of safety and security that is enforced,and the level of system resources/performance that are applied to the main computational objectives (e.g.,e- commerce transactions).We show how CIRCADIA is able to dynamically adjust its security activities to account for changing threat pro .les and objectives.The result:a continually-optimized balance of security-maintaining activity that reduces risk while still allowing the system to meet its goals.
D. J. Musliner and V. A. Ha, "Balancing Safety Against Performance:Tradeoffs in Internet Security," 36th Annual Hawaii International Conference on System Sciences, 2003. Proceedings of the(HICSS), Big Island, Hawaii, 2003, pp. 205b.