计算机工程与应用 ›› 2018, Vol. 54 ›› Issue (4): 122-127.DOI: 10.3778/j.issn.1002-8331.1608-0227

• 网络、通信与安全 • 上一篇    下一篇

基于COOPN的泛在网安全风险评估建模方法

赵鸿达,戚  湧,李千目   

  1. 南京理工大学 计算机科学与工程学院,南京 210094
  • 出版日期:2018-02-15 发布日期:2018-03-07

Ubiquitous network security risk assessment modeling based on COOPN

ZHAO Hongda, QI Yong, LI Qianmu   

  1. School of Computer Science & Engineering, Nanjing University of Science & Technology, Nanjing 210094, China
  • Online:2018-02-15 Published:2018-03-07

摘要: 在无线接入、射频识别、网络应用、人机交互等新技术的推动下,人与人、人与物乃至物与物之间随时随地沟通的泛在网络正逐步构建。与此同时,信息安全事件发生的范围也随之扩大。为了全面地应对信息安全风险,要对信息安全风险进行建模评估。传统的方法已经不能完全适应新的泛在网络安全需求,需要对现有建模方法进行改进,以实现对泛在网络风险的建模评估。与现有方法相比,基于COOPN(CORAS-based Object Oriented Petri-net)的建模评估方法既继承了现有方法扩展性好、复用性高、可精细化描述的特点,又增加了形式化的描述以及动态分析能力。仿真实验证明该方法能够有效地进行泛在网络信息安全建模评估。

关键词: 泛在网络, 信息安全, 建模评估, COOPN方法

Abstract: Driven by wireless access, radio frequency identification, network application and human-computer interaction, a ubiquitous network for human and things to communicate in anywhere at any time is becoming a reality. At the same time, the range of information security incidents have been expanded. In order to addressing information security risks roundly, the first thing to do is to assess and model information security risks. Traditional accessing and modeling methods are not fit for the new ubiquitous network security demands. It is necessary to realize ubiquitous network risk assessment and modeling based on current modeling methods. Compared with current methods, the proposed approach COOPN(CORAS-based Object Oriented Petri-Net) inherits the advantages of fine scalability, high reusability and fine detail description and adds formal description and dynamic analysis functions. Example proves that COOPN is an effective ubiquitous network information security risk assessment modeling method.

Key words: ubiquitous network, information security, modeling assessment, CORAS-based Object Oriented Petri-net(COOPN)