检索规则说明:AND代表“并且”;OR代表“或者”;NOT代表“不包含”;(注意必须大写,运算符两边需空一格)
检 索 范 例 :范例一: (K=图书馆学 OR K=情报学) AND A=范并思 范例二:J=计算机应用与软件 AND (U=C++ OR U=Basic) NOT M=Visual
作 者:于亚 伏玉笋 YU Ya;FU Yusun(Ningbo Artificial Intelligence Institute of Shanghai Jiao Tong University,Ningbo 315000,China;School of Electronic Information and Electrical Engineering,Shanghai Jiao Tong University,Shanghai 200240,China;Key Laboratory of System Control and Information Processing,Ministry of Education of China,Shanghai 200240,China;Shanghai Engineering Research Center of Intelligent Control and Management,Shanghai 200240,China)
机构地区:[1]上海交通大学宁波人工智能研究院,浙江宁波315000 [2]上海交通大学电子信息与电气工程学院,上海200240 [3]系统控制与信息处理教育部重点实验室,上海200240 [4]上海工业智能管控工程技术研究中心,上海200240
出 处:《物联网学报》2022年第4期149-157,共9页Chinese Journal on Internet of Things
基 金:国家重点研发计划(No.2019YFB1705703);宁波市重大科技任务攻关项目(No.2021Z022)。
摘 要:离散制造业的发展呈现智能、开放和协同的趋势,大量异构设备接入工业互联网,给安全带来了严重挑战,因此,引入信任管理和对设备进行可信度量的初始接入显得尤为重要。为了更加及时准确地评估初始接入系统的边缘终端的可信程度,创新性地提出了一种基于设备漏洞数据库的可信度量方法。该方法采用云边协同的架构,在中央云端建立设备信息库和漏洞数据库,然后在边缘端计算终端风险因子,最后完成对接入终端的信任初始化。仿真结果表明,该方法很好地兼顾了系统的性能和安全。The development of the discrete manufacturing shows a trend of intelligence,openness and collaboration.As a result,many heterogeneous devices are connected to the industrial internet,which brings serious challenges to the security.Therefore,it is particularly important to introduce trust management and trusted access to devices for trusted measurement.In order to more timely and accurately evaluate the trustworthiness of the edge terminal initially accessing the system,a trustworthiness measurement method based on the device vulnerability database was innovatively proposed.This method adopted the architecture of cloud-edge collaboration,established a device information database and a vulnerability database in the central cloud,and then calculated the terminal risk factor at the edge.Finally,the trust initialization of the access terminal was completed.The simulation results show that the method can well balance the efficiency and security of the system.
关 键 词:工业互联网 设备接入 安全 信任管理 可信度量 漏洞评估
分 类 号:TN915.08[电子电信—通信与信息系统]
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在载入数据...
正在链接到云南高校图书馆文献保障联盟下载...
云南高校图书馆联盟文献共享服务平台 版权所有©
您的IP:3.16.50.172