CSE 545 - Professor Patrick McDaniel Page
-
Systems Security: Why is Measurement Important?
Patrick Traynor CSE 544 - Advanced Systems Security 1/23/07
1
Systems Security: Why is Measurement Important? Patrick Traynor - - PowerPoint PPT Presentation
CSE 545 - Professor Patrick McDaniel Page
Patrick Traynor CSE 544 - Advanced Systems Security 1/23/07
1
CSE 544 - Professor Patrick McDaniel Page
2
CSE 544 - Professor Patrick McDaniel Page
2
CSE 544 - Professor Patrick McDaniel Page
2
CSE 544 - Professor Patrick McDaniel Page
2
CSE 544 - Professor Patrick McDaniel Page
2
CSE 544 - Professor Patrick McDaniel Page
3
CSE 544 - Professor Patrick McDaniel Page
4
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
5
CCH TCH
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
6
SMS Voice SMS SMS SMS SMS SMS SMS SMS X
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
Message Generation RACH Voice SMS Attack SMS Service Queue Manager Service Queue Module SDCCH TCH Call Completion and SMS Delivery Reporting Module
7
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
8
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
9
0.2 0.4 0.6 0.8 1 3 4 5 6 7 8 9 Average Percent Blocking During Attack SMS Attack Messages per Second Uniform (SDCCH) Poisson (SDCCH) Burst 12 (SDCCH) 0.2 0.4 0.6 0.8 1 1.2 500 1000 1500 2000 2500 3000 3500 4000 Utilization Time (seconds) SDCCH Utilization TCH Utilization
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
10
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
11
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
12
2 4 2
Finished Finished Finished
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
13
4 2
Voice SMS
2
Finished Finished Finished
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
13
4 2
Voice SMS
2
Finished Finished Finished
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
13
4 2
Voice SMS
2
Finished Finished Finished
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
13
4 2
Voice SMS
2
Finished Finished Finished
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
13
4 2
Voice SMS
2
Finished Finished Finished
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
13
4 2
Voice SMS
2
Finished Finished Finished
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
13
4 2
Voice SMS
2
Finished Finished Finished
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
13
4 2
Voice SMS
2
Finished Finished Finished
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
14
0.2 0.4 0.6 0.8 1 500 1000 1500 2000 2500 3000 3500 4000 Percent of Attempts Blocked Time (seconds) Service Queue (SMS) Service Queue (Voice) TCH (Voice) 0.2 0.4 0.6 0.8 1 500 1000 1500 2000 2500 3000 3500 4000 Utilization Time (seconds) SDCCH TCH Service Queue
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
15
NQ = PQ ρ 1 − ρ PQ = p0(mρ)m m!(1 − ρ) p0 = "m−1 X
n=0
(mρ)n n! + (mρ)m m!(1 − ρ) #−1
ρtarget = ρactual(1 − Pdrop)
Pdrop = Pdrop,high · λhigh + Pdrop,med · λmed + Pdrop,low · λlow λSMS
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
16
Low Med High
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
16
Low Med High
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
16
Low Med High
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
16
Low Med High
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
16
Low Med High
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
16
Low Med High
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
16
Low Med High
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
16
Low Med High
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
16
Low Med High
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
17
0.2 0.4 0.6 0.8 1 500 1000 1500 2000 2500 3000 3500 4000 Percent of Attempts Blocked Time (seconds) Service Queue (SMS - Priority 1) Service Queue (SMS - Priority 2) Service Queue (SMS - Priority 3)
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
18
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
19
PB =
An n!
Pl=n−1
l=0 Al l!
E(n) = ρ(1 − PB)
SDCCHs
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
19
PB =
An n!
Pl=n−1
l=0 Al l!
E(n) = ρ(1 − PB)
SDCCHs
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
20
0.2 0.4 0.6 0.8 1 500 1000 1500 2000 2500 3000 3500 4000 Percent of Attempts Blocked Time (seconds) SDCCH (SMS) SDCCH (Voice) TCH (Voice) 0.2 0.4 0.6 0.8 1 500 1000 1500 2000 2500 3000 3500 4000 Utilization Time (seconds) SDCCH TCH
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
21 CCH* SDCCH/8 TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TRX 1 TRX 2 TRX 3 TRX 4
1 2 3 4 5 6 7
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
21 CCH* SDCCH/8 TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TRX 1 TRX 2 TRX 3 TRX 4
1 2 3 4 5 6 7
SDCCH/8
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
21 CCH* SDCCH/8 TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TCH TRX 1 TRX 2 TRX 3 TRX 4
1 2 3 4 5 6 7
SDCCH/8 SDCCH/8
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
22
0.2 0.4 0.6 0.8 1 500 1000 1500 2000 2500 3000 3500 4000 Percent of Attempts Blocked Time (seconds) SDCCH (SMS) SDCCH (Voice) TCH (Voice) 0.2 0.4 0.6 0.8 1 500 1000 1500 2000 2500 3000 3500 4000 Utilization Time (seconds) SDCCH TCH
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
SMS
23
SDCCHs TCH
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
SMS Voice
23
SDCCHs TCH
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
24
0.2 0.4 0.6 0.8 1 500 1000 1500 2000 2500 3000 3500 4000 Percent of Attempts Blocked Time (seconds) SDCCH (SMS) SDCCH (Voice) TCH (Voice)
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
25
0.2 0.4 0.6 0.8 1 500 1000 1500 2000 2500 3000 3500 4000 Percent of Attempts Blocked Time (seconds) Service Queue (SMS - Priority 1) Service Queue (SMS - Priority 2) Service Queue (SMS - Priority 3)
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
26
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
27
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
28
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
chargers?
29
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
30
Systems and Internet Infrastructure Security (SIIS) Laboratory Page
31