同济大学学报(自然科学版)2024,Vol.52Issue(2):157-165,9.DOI:10.11908/j.issn.0253-374x.23361
面向城轨云平台边界安全防护的动态信任管理方法
A Dynamic Trust Management Method for Border Security Protection of Metro Cloud Platform
摘要
Abstract
To address the problem of numerous borders and weak border protection in metro cloud platform,the collaborative interaction between the cloud and the industrial control network is analyzed,and a dynamic trust management method for border security protection of metro cloud platform is proposed.The method consists of abnormal behavior recognition,trust evaluation,trust updating,and trust-based dynamic access control.Based on the network topology of metro cloud-based integrated supervisory control system,three kinds of abnormal control commands are simulated,i.e.,unauthorized control commands,non-conforming control commands,and interference with normal control commands.The results show that the proposed method can effectively resist abnormal control commands initiated by malicious nodes.The changes in trust values vary for different nodes and different types of misbehaviors following the rule of"slow rise and fast fall",thus ensuring fine-grained boundary protection for the metro cloud platform.关键词
信任管理/城轨云/边界安全防护/异常控制指令Key words
trust management/metro cloud/border security protection/abnormal control commands分类
交通工程引用本文复制引用
张雷,徐倩,何积丰,曾小清,宁正..面向城轨云平台边界安全防护的动态信任管理方法[J].同济大学学报(自然科学版),2024,52(2):157-165,9.基金项目
国家自然科学基金资助项目(52172329) (52172329)
国家重点研发计划资助项目(2022YFB4300501) (2022YFB4300501)
上海市科委资助项目(23DZ2204900) (23DZ2204900)