Abstract
Intrusion tolerance is capability of Internet systems withstanding attacks and intrusions under unsafe environment. This paper presents the architecture of an intrusion tolerant system using group communication. A distributed group membership algorithm is described which introduces a strategy detecting failure in local servers and announcing them to remote servers to avoid the side effects of remote failure detection. The paper also points out that stability of failure detector is a necessary condition but not sufficient condition of algorithm cease. On analyzing the essential of block, block detection and avoidance mechanism is designed. Finally, we have developed a group membership prototype system on WAN condition. Experiment results show the algorithm has well performance in complicated Internet condition.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Preview
Unable to display preview. Download preview PDF.
Similar content being viewed by others
References
Pal, P., Webber, F., Schantz, R., et al.: Survival by Defense- Enabling. In: Proceedings of the New Security Paradigms Workshop 2001, pp. 71–78. ACM Press, New Mexico (2001)
Birman, K.: The Process Group Approach to Reliable Distributed Computing. Communications of the ACM 36(12), 37–53 (1993)
Défago, X., Hayashibara, N., Katayama, T.: On the design of a failure detection service for large scale distributed systems. In: Proc. of the PBit 2003, pp. 88–95. A&I Ltd, Japan (2003)
Chockler, G.V., Keidar, I., Vitenberg, R.: Group Communication Specifications: A Comprehensive Study. ACM Computing Surveys 33(4), 1–43 (2001)
Keidar, I., Sussman, J., Marzullo, K., et al.: Moshe: A Group Membership Service for WANs. ACM Transactions on Computer Systems (TOCS) 20(3), 191–238 (2002)
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2006 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Yin, Lh., Fang, Bx., Yu, Xz. (2006). Distributed Group Membership Algorithm in Intrusion-Tolerant System. In: Shen, H.T., Li, J., Li, M., Ni, J., Wang, W. (eds) Advanced Web and Network Technologies, and Applications. APWeb 2006. Lecture Notes in Computer Science, vol 3842. Springer, Berlin, Heidelberg. https://doi.org/10.1007/11610496_66
Download citation
DOI: https://doi.org/10.1007/11610496_66
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-540-31158-4
Online ISBN: 978-3-540-32435-5
eBook Packages: Computer ScienceComputer Science (R0)