DocumentCode
3234229
Title
A fault tolerance approach to survivability
Author
Ammann, Paul ; Jajodia, Sushil ; Liu, Peng
Author_Institution
Center for Secure Inf. Syst., George Mason Univ., Fairfax, VA, USA
fYear
1998
fDate
1998
Firstpage
204
Lastpage
212
Abstract
Attacks on computer systems have received a great deal of press attention; however, most of the focus has been on how an attacker can disrupt an organization´s operations. Although attack prevention is clearly preferred, preventive measures do fail, and some attacks inevitably succeed in compromising some or all of particular systems, i.e., databases. We propose research into a fault-tolerance approach that addresses all phases of survivability: attack detection, damage confinement, damage assessment and repair, and attack avoidance. We focus attention on continued service and recovery issue. A promising area of research for continued service addresses relaxed notions of consistency. Expanding on the notion of self stabilization, the idea is to formalize the degree of damage under which useful services is still possible. A complementary research area for recovery is the engineering of suitable mechanisms into existing systems. We explain the underlying models for these research areas and illustrate them with examples from the database domain. We argue that these models form a natural part of a fault tolerance approach and propose research into adapting these models for larger systems
Keywords
fault tolerant computing; attack avoidance; attack detection; damage assessment; damage confinement; fault tolerance; recovery; survivability; Computer hacking; Data security; Databases; Fault tolerance; Fault tolerant systems; Information systems; Internetworking; Phase detection; Protection;
fLanguage
English
Publisher
ieee
Conference_Titel
Computer Security, Dependability and Assurance: From Needs to Solutions, 1998. Proceedings
Conference_Location
York, UK ; Williamsburg, VA
Print_ISBN
0-7695-0337-3
Type
conf
DOI
10.1109/CSDA.1998.798367
Filename
798367
Link To Document