|
|
|
题名
|
作者
|
年代
|
出处
|
被引量
|
| 1 | Scalable and Identifier/Locator-Splitting Routing Protocol for Mobile Ad Hoc Networks显示文摘In the traditional Internet Protocol (IP) architecture, there is an overload of IP semantic problems. Existing solutions focused mainly on the infrastructure for the fixed network, and there is a lack of support for Mobile Ad Hoc Networks (MANETs). To improve scalability. a routing protocol for MANETs is presented based on a locator named Tree-structure Locator Distance Vector (TLDV). The hard core of this routing method is the identifier/locator split by the Distributed Hash Table (DHT) method, which provides a scalable routing service. The node locator indicates its relative location in the network and should be updated whenever topology changes. Locator space is organized as a tree-structure, and the basic routing operation of the TLDV protocol is presented. TLDV protocol is compared to some classical routing protocols for MANETs on the NS2 platform. Results show that TLDV has better scalability. | Wang Haiquan Chen Meng Hu Junshun Xia Chunhe | 2012 | China Communications2012,9,1: | 3 |
| 2 | On the satisfiability of authorization requirements in business process显示文摘 | Yang BO Chunhe XIA Zhigang ZHANG Xinzheng LU | 2017 | Frontiers of Computer Science2017,11,3: | 2 |
| 3 | Modeling and Global Conflict Analysis of Firewall Policy显示文摘The global view of firewall policy conflict is important for administrators to optimize the policy.It has been lack of appropriate firewall policy global conflict analysis,existing methods focus on local conflict detection.We research the global conflict detection algorithm in this paper.We presented a semantic model that captures more complete classifications of the policy using knowledge concept in rough set.Based on this model,we presented the global conflict formal model,and represent it with OBDD(Ordered Binary Decision Diagram).Then we developed GFPCDA(Global Firewall Policy Conflict Detection Algorithm) algorithm to detect global conflict.In experiment,we evaluated the usability of our semantic model by eliminating the false positives and false negatives caused by incomplete policy semantic model,of a classical algorithm.We compared this algorithm with GFPCDA algorithm.The results show that GFPCDA detects conflicts more precisely and independently,and has better performance. | LIANG Xiaoyan XIA Chunhe JIAO Jian HU Junshun LI Xiaojian | 2014 | China Communications2014,11,5: | 2 |
| 4 | Optimization of a single-drop microextraction procedure for the determination of organophosphorus pesticides in water and fruit juice with gas chromatography-flame photometric detection显示文摘 | Qin Xiao Bin Hu Chunhe Yu Linbo Xia Zucheng Jiang | 2005 | Talanta2005,,4: | 1 |
| 5 | Trust Type Based Trust Bootstrapping Model of Computer Network Collaborative Defense显示文摘In the system of Computer Network Collaborative Defense(CNCD),it is difficult to evaluate the trustworthiness of defense agents which are newly added to the system,since they lack historical interaction for trust evaluation.This will lead that the newly added agents could not get reasonable initial trustworthiness,and affect the whole process of trust evaluation.To solve this problem in CNCD,a trust type based trust bootstrapping model was introduced in this research.First,the division of trust type,trust utility and defense cost were discussed.Then the constraints of defense tasks were analyzed based on game theory.According to the constraints obtained,the trust type of defense agents was identified and the initial trustworthiness was assigned to defense agents.The simulated experiment shows that the methods proposed have lower failure rate of defense tasks and better adaptability in the respect of defense task execution. | YU Yang XIA Chunhe LI Shiying LI Zhong | 2015 | China Communications2015,12,12: | 1 |
| 6 | Semantics-Based Compliance An a lys is o f N e two rk S e cu rity Policy Hie ra rch ie s显示文摘Network security policy and the automated refinement of its hierarchies aims to simplify the administration of security services in complex network environments. The semantic gap between the policy hierarchies reflects the validity of the policy hierarchies yielded by the automated policy refinement process. However, little attention has been paid to the evaluation of the compliance between the derived lower level policy and the higher level policy. We present an ontology based on Ontology Web Language (OWL) to describe the semantics of security policy and their implementation. We also propose a method of estimating the semantic similarity between a given higher level security policy and the lower level ones to evaluate the compliance for the policy refinement approach. The method is verified in the case study. The experimental results demonstrate that the proposed method evaluates the semantic similarity between policy and implementation accurately, and that the algorithm of concept similarity analysis reflects the subjective similarity judgment of policy and implementation more accurate than the other algorithms. | Yao Shan Xia Chunhe Hu Junshun Jiao Jian Li Xiaojian | 2012 | China Communications2012,9,7: | 1 |
| 7 | P2P worm detection based on application identification显示文摘 | Chunhe Xia Yunping Shi Xiaojian Li Wei Gao | 2007 | Frontiers of Computer Science in China2007,,1: | 1 |
| 8 | Research on Loophole with Second Distribution of Real Value Detectors显示文摘Traditional anomaly detection algorithm has improved to some degree the mechanism of negative selection. There still remain many problems such as the randomness of detector generation, incompleteness of selfset and the generalization ability of detectors, which would cause a lot of loopholes in non-self space. A heuristic algorithm based on the second distribution of real value detectors for the remains of loopholes of the non-self space in the first distribution and the mutation regions of self space is proposed. The algorithm can distribute real value detectors through omission data based on the methods of partition and movement. A method is proposed to solve the problem on how to get the optimal solutions to the parameters related in the algorithm. Theoretical analysis and experimental results prove the universality and effectiveness of the method. It is found that our algorithm can effectively avoid the generation of loopholes and thus reduce the omission rate of detector sets. | WANG Tianbo ZHANG Fengbin XIA Chunhe | 2016 | Chinese Journal of Electronics2016,25,6: | 1 |
| 9 | LDA-ID:An LDA-Based Framework for Real-Time Network Intrusion Detection显示文摘Network intrusion poses a severe threat to the Internet.However,existing intrusion detection models cannot effectively distinguish different intrusions with high-degree feature overlap.In addition,efficient real-time detection is an urgent problem.To address the two above problems,we propose a Latent Dirichlet Allocation topic model-based framework for real-time network Intrusion Detection(LDA-ID),consisting of static and online LDA-ID.The problem of feature overlap is transformed into static LDA-ID topic number optimization and topic selection.Thus,the detection is based on the latent topic features.To achieve efficient real-time detection,we design an online computing mode for static LDA-ID,in which a parameter iteration method based on momentum is proposed to balance the contribution of prior knowledge and new information.Furthermore,we design two matching mechanisms to accommodate the static and online LDA-ID,respectively.Experimental results on the public NSL-KDD and UNSW-NB15 datasets show that our framework gets higher accuracy than the others. | Weidong Zhou Shengwei Lei Chunhe Xia Tianbo Wang | 2023 | China Communications2023,20,12: | 0 |
| 10 | A behavior-aware SLA-based framework for guaranteeing the security conformance of cloud service显示文摘As cloud computing technology turning to mature,cloud services have become a trust-based service.Users'distrust of the security and performance of cloud services will hinder the rapid deployment and development of cloud services.So cloud service providers(CSPs)urgently need a way to prove that the infrastructure and the behavior of cloud services they provided can be trusted.The challenge here is how to construct a novel framework that can effective verify the security conformance of cloud services,which focuses on fine-grained descriptions of cloud service behavior and security service level aggreements(SLAs).In this paper,we propose a novel approach to verify cloud service security conformance,which reduces the description gap between the CSP and users through modeling cloud service behavior and security SLA,these models enable a systematic integration of security constraints and service behavior into cloud while using UPPAAL to check the performance and security conformance.The proposed approach is validated through case study and experiments with real cloud service based on Open-Stack,which illustrates CloudSec approach effectiveness and can be applied on realistic cloud scenario. | Xiaochen LIU Chunhe XIA Tianbo WANG Li ZHONG Xiaojian LI | 2020 | Frontiers of Computer Science2020,14,6: | 0 |