项目名称: 基于概率本体的CPS入侵检测方法研究
项目编号: No.61461010
项目类型: 地区科学基金项目
立项/批准年度: 2015
项目学科: 无线电电子学、电信技术
项目作者: 张红梅
作者单位: 桂林电子科技大学
项目金额: 43万元
中文摘要: CPS(信息物理融合系统)的安全是备受关注的热点问题。然而,当前的CPS入侵检测方法在不同程度上存在误警率高、实时性差、不便于知识共享等问题。由于概率本体在概念间语义关系的描述、结构化信息共享、模型可演化、以及不确定知识表示和推理等方面有优势,本课题将其引入CPS的入侵检测领域。通过CPS入侵检测的概率本体表示方法、推理方法以及推理过程可视化、规则表达可交互的研究,提高入侵检测的准确性和可理解性;在此基础上,研究入CPS入侵检测规则的评估方法以及规则交换算法,提高子系统的学习效率和系统间的协同能力;探索结合应用层任务调度的跨层联合优化方法,缩短分布式入侵检测的通信延时,最终实现准确、协同、实时CPS分布式入侵检测。通过上述理论研究,争取在概率本体建模与推理、知识交换、以及CPS跨层优化等方面取得突破性的成果,为CPS安全相关领域的研究提供理论基础和技术支撑。
中文关键词: 概率本体;信息物理融合系统;入侵检测;跨层优化;规则交换
英文摘要: Cyber Physical System security has become a hot topic and has attracted the most attention. However, the current CPS intrusion detection technology, in varying degrees, exist the problems of high false alarm rate, poor real-time performance, not easy knowledge sharing and so on. Since the probabilistic ontology has advantages in the description of semantic relations between concepts, structured information sharing, model evolution, uncertain knowledge representation and reasoning. Therefore, it was introduced into the field of intrusion detection of CPS. Doing research in probabilistic ontology representation, reasoning and inference process visualization, comprehensible rules generation in CPS intrusion detection, which is to improve the accuracy and intelligibility of intrusion detection. On this basis, doing research into intrusion detection rule evaluation methods and the CPS rules exchange algorithm to improve learning efficiency and system interoperability between subsystems; Exploring joint cross-layer optimization approach combining task scheduling in application layer, which is to shorten communication delay in distributed intrusion detection and finally fulfill an accurate, collaborative, real-time distributed intrusion detection. Through the above theoretical research, and strive to achieve breakthrough results in the probabilistic ontology modeling and reasoning, knowledge exchange, as well as other aspects of cross-layer optimization in CPS, which provide a theoretical basis and technical support for the study of CPS security-related fields.
英文关键词: probatilistic ontology;cyber physical system;intrusion detection;cross-layer optimization;rule exchange