作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2021, Vol. 47 ›› Issue (5): 24-29. doi: 10.19678/j.issn.1000-3428.0059184

• 热点与综述 • 上一篇    下一篇

基于数据库二进制日志的竞赛式仲裁优化方案

吴正江1, 姚琪1, 冯四风2, 顾青2   

  1. 1. 河南理工大学 计算机科学与技术学院, 河南 焦作 454000;
    2. 普华诚信信息技术有限公司, 上海 201499
  • 收稿日期:2020-08-06 修回日期:2020-10-15 发布日期:2020-11-05
  • 作者简介:吴正江(1981-),男,副教授、博士,主研方向为数据挖掘、并行计算、拟态防御;姚琪,硕士研究生;冯四风,硕士;顾青,研究员、博士。
  • 基金资助:
    上海市科学技术委员会科研计划项目(18DZ1100502)。

Optimization Scheme of Competitive Arbitration Based on Binary Database Log

WU Zhengjiang1, YAO Qi1, FENG Sifeng2, GU Qing2   

  1. 1. School of Computer Science and Technology, Henan Polytechnic University, Jiaozuo, Henan 454000, China;
    2. Puhua Trust Information Technology Limited Company, Shanghai 201499, China
  • Received:2020-08-06 Revised:2020-10-15 Published:2020-11-05

摘要: 在拟态防御理论中,仲裁模型在一定程度上决定了拟态系统的整体安全性和执行效率,而仲裁策略作为仲裁模型中的关键环节,会对裁决结果的正确性产生直接影响。针对竞赛式仲裁模型中由差模逃逸造成的裁决结果异常问题,提出一种竞赛式仲裁优化方案,采用异构数据库执行体的二进制日志匹配结果对仲裁结果进行校验,保证裁决结果的正确性。实验结果表明,与竞赛式仲裁方案相比,优化方案能够提高仲裁结果正确率,减少SQL注入的差模逃逸事件,保证拟态系统在执行周期内的安全性和可靠性。

关键词: 拟态防御, 仲裁策略, 竞赛式仲裁, 差模逃逸, 二进制日志

Abstract: In the mimic defense theory,the quality of the arbitration model determines the overall safety and efficiency of the mimic system to a certain extent,and the arbitration strategy,as a key link in the arbitration model,can directly affect the accuracy of the arbitration results.In order to solve the problem of abnormal arbitration results caused by the differential mode escape in the competitive arbitration model,this paper proposes a competitive arbitration optimization scheme.The scheme uses binary log matching results of heterogeneous database executors to verify the arbitration results,so as to ensure the correctness of the arbitration results.Experimental results show that compared with the competitive arbitration scheme,the optimized scheme can increase the accuracy of arbitration results,effectively reduce the differential mode escape events of SQL injection,and improve the security and reliability of the mimic system in the lifecycle.

Key words: mimic defense, arbitration strategy, competitive arbitration, differential mode escape, binary log

中图分类号: