Design Diversity and the Immune System Paradigm: Cornerstones for Information System Survivability
نویسنده
چکیده
The Call for Participation of ISW-2000 defines information survivability as “the ability of a system to continue to fulfill its mission in the presence of attacks, accidents, or failures”. This position paper presents two concepts: the design diversity technique [1, 2] and the immune system paradigm [3] that already have been found to be useful in assuring the dependability of mission-critical information systems. The above concepts as well as the concept of fault tolerance [3, 4] have originated in the research that the author and his associates have conducted since 1960 [5]. The research has shown that these concepts have the potential to enhance information survivability in the presence of attacks as well [6–9]. Our goal at ISW-2000 is to bring the potential usefulness of the concepts to the attention of the survivability community. Fault tolerance, design diversity and the immune system paradigm become especially important for information survivability when mission-critical systems are built using COTS hardware and software components. Most COTS components have very few, if any at all, built-in features that support survivability, therefore the defenses have to be introduced at the system design level. The remainder of this position paper summarizes: (1) the threats to information survivability; (2) the defenses, i.e., the technique of design diversity and the use of the immune system paradigm; and (3) the first example of their joint application: the recently described “fault tolerance infrastructure for dependable computing with COTS components” [10].
منابع مشابه
Designing a logical data model of athletes' hospital information management system based on international standards
Background and purpose: Today, hospital care, relying on the health record system, has received more attention than before. Considering the diversity of data in these systems, the design of standard conceptual and logical models by service providers will play an important role in their success. Therefore, this research was conducted with the aim of designing a logical data model of the hospital...
متن کاملطراحی مدل مفهومی سیستم گزارش دهی آزمایشگاه جهت تبادل داده با سامانه پرونده الکترونیک سلامت ایران
Introduction: Integration of health information systems based on a common language is essential to exchange data with the system. The study aimed to eliminate the existing problem in the integration of information system with electronic health records system through providing a conceptual model of laboratory reporting system, using the Unified Modeling Language and enable information system dev...
متن کاملIntegrated Intelligent Information and Analytical System of Management of a Life Cycle of Products of Transport Companies
Developed an integrated intellectual computerized system of ecological-economic monitoring, modeling, and managing the life cycle of the products of technogenic enterprises of transport engineering, which is presented in the form of a 3-equation structure, functioning in conditions of instability. The proposed paradigm system life cycle management applicable to any other control system of large...
متن کاملTowards Measuring the Project Management Process During Large Scale Software System Implementation Phase
Project management is an important factor to accomplish the decision to implement large-scale software systems (LSS) in a successful manner. The effective project management comes into play to plan, coordinate and control such a complex project. Project management factor has been argued as one of the important Critical Success Factor (CSF), which need to be measured and monitored carefully duri...
متن کاملDefining Survivability for Engineering Systems
This paper introduces an on-going doctoral research track on the role of survivability as an attribute in the design of complex system architectures. Survivability may be defined generally as the ability of a system to minimize the impact of a finite disturbance on value delivery, achieved through either the satisfaction of a minimally acceptable level of value delivery during and after a finit...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2000