Investigation of a Markov Model for Computer System Security Threats
- Authors: Magazev A.A.1, Tsyrulnik V.F.1
-
Affiliations:
- Omsk State Technical University
- Issue: Vol 52, No 7 (2018)
- Pages: 615-624
- Section: Article
- URL: https://journal-vniispk.ru/0146-4116/article/view/175589
- DOI: https://doi.org/10.3103/S0146411618070180
- ID: 175589
Cite item
Abstract
This work investigates a model of computer system security threats formulated in the language of Markov processes. In this model the operation of a computer system is considered as a sequence of failures and recoveries, which result from information security threats affecting the system. The model is described in detail: explicit analytical formulas for probabilities of computer system states at any time are derived, some extreme cases discussed, and the system’s long-run dynamics is analyzed. The dependence of a secure state probability (i.e. a state with no threats) on the probabilities of threats is investigated separately. In particular, it is shown that this dependence takes on essentially different forms for odd and even times. For example, in case of one threat the secure state probability shows non-monotonic dependence on the probability of threats at even times; this function admits at least one local minimum in its region of definition. The indicated feature is considered important because it allows identifying the most dangerous areas of threats where the secure state probability can be below the permissible level. Finally, an important characteristic of the model is introduced, i.e., the relaxation time, by means of which the permissible value range of the system’s protection parameters, is constructed.
Keywords
About the authors
A. A. Magazev
Omsk State Technical University
Author for correspondence.
Email: magazev@mail.ru
Russian Federation, Omsk, 644050
V. F. Tsyrulnik
Omsk State Technical University
Author for correspondence.
Email: lera.tsyrulnik@mail.ru
Russian Federation, Omsk, 644050
Supplementary files
