云计算环境下,开放的运行环境使其面临重大的安全挑战,有效地确定不可信云终端用户并正确分析云用户的异常行为是在复杂动态环境下保证云安全的基础.提出了一种基于动态博弈的用户行为模型,通过不完全信息多阶段博弈来分析终端用户的类型,博弈时将用户的当前行动和历史行动相结合,并考虑了网络中存在的误报和漏报的情况,以加强对云终端用户类型推断的准确性和全面性.理论证明和实验验证表明该机制能快速甄别系统中潜在的不可信云终端用户,有效遏制不可信云终端用户的侵入行为,为主动安全机制的实现奠定基础.
The open environment in cloud computing is much more complex and unpredictable,so how to identify untrustworthy cloud end-user by analyzing abnormal user behaviors is an important topic in cloud security.This paper proposes a model for behavior analysis based on incomplete information multi-stage dynamic games,in which current action and historical action,false negative and false positive in network detection methods are considered to improve the accuracy and comprehensiveness of the dynamic judgment of end-use trustworthiness.The experimental results show that it can discriminate potential untrustworthy cloud end-user,and decrease intrusion effectively while perfect Bayesian equilibrium is reached,laying the foundation for active safety mechanism.