Disentangled Orchestration on Cyber Ranges

被引:0
|
作者
Fu, Yongquan [1 ]
Han, Weihong [2 ]
Yuan, Dong [3 ]
机构
[1] Natl Univ Def Technol, Coll Comp, Natl Key Lab Parallel & Distributed Comp, Changsha 410073, Peoples R China
[2] Guangzhou Univ, Sch Comp Sci & Cyber Engn, Guangzhou 511370, Guangdong, Peoples R China
[3] Univ Sydney, Fac Engn, Sydney, NSW 2050, Australia
基金
中国国家自然科学基金;
关键词
Task analysis; Containers; Behavioral sciences; Delays; Testing; Chatbots; Malware; Composition; event chaining; experiment; orchestration; cyber range;
D O I
10.1109/TDSC.2023.3303888
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Cyber ranges require networked applications to test cyberspace events effectively. As testing becomes more advanced, it involves multiple real-world applications with flexible execution orders. However, it is increasingly challenging to orchestrate large-scale, chained, and heterogeneous Internet applications. State-of-the-art orchestration techniques face scalability issues due to inefficient representation models and entangled scheduling of events and applications. To address these issues, we present Wukong, a disentangled orchestration system in cyber ranges that disaggregates the scheduling and execution of workflows and their applications in a decentralized coordination approach. First, we overcome the heterogeneity of events with a workflow model that encodes event chains with compositional Directed Acyclic Graphs (DAGs) and unified event triggers. Second, Wukong disaggregates the execution of DAGs and applications with push-pull decentralized coordination over distributed agents. Our evaluation of Wukong on a real-world cyber range demonstrates its expressive, scalable, and efficient abilities for automatically emulating diverse event chains. The storage footprint of compositional modeling is up to 57 times smaller than that of baseline models. Wukong's response delay is 1.52 to 2.74 times shorter than state-of-the-art orchestration engines, and the scheduling delay is up to 2.16 times smaller than the baseline approach.
引用
收藏
页码:2344 / 2360
页数:17
相关论文
共 50 条
  • [11] An ICS Based Scenario Generator for Cyber Ranges
    Larrucea, Xabier
    Molinuevo, Alberto
    SYSTEMS, SOFTWARE AND SERVICES PROCESS IMPROVEMENT (EUROSPI 2020), 2020, 1251 : 543 - 554
  • [12] Unsupervised and incremental learning orchestration for cyber-physical security
    Reis, Lucio Henrik A.
    Murillo Piedrahita, Andres
    Rueda, Sandra
    Fernandes, Natalia C.
    Medeiros, Dianne S., V
    de Amorim, Marcelo Dias
    Mattos, Diogo M. F.
    TRANSACTIONS ON EMERGING TELECOMMUNICATIONS TECHNOLOGIES, 2020, 31 (07)
  • [13] Cyber-security gamification in federation of cyber ranges: design, implementation, and evaluation
    Diakoumakos, Jason
    Chaskos, Evangelos
    Kolokotronis, Nicholas
    Lepouras, George
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2025, 24 (01)
  • [14] ECHO Federated Cyber Range: Towards Next-Generation Scalable Cyber Ranges
    Oikonomou, Nikos
    Mengidis, Notis
    Spanopoulos-Karalexidis, Minas
    Voulgaridis, Antonis
    Merialdo, Matteo
    Raisr, Ivo
    Hanson, Kaarel
    de La Vallee, Paloma
    Tsikrika, Theodora
    Vrochidis, Stefanos
    Votis, Konstantinos
    PROCEEDINGS OF THE 2021 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE (IEEE CSR), 2021, : 403 - 408
  • [15] Cyber-Ranges as a Mean of Security Culture Establishment
    Hatzivasilis, George
    Fysarakis, Kostas
    Ioannidis, Sotiris
    ERCIM NEWS, 2020, (121): : 36 - 37
  • [16] Exploring the Architectural Composition of Cyber Ranges: A Systematic Review
    Stamatopoulos, Dionysios
    Katsantonis, Menelaos
    Fouliras, Panagiotis
    Mavridis, Ioannis
    FUTURE INTERNET, 2024, 16 (07)
  • [17] Recommendation and Prediction in a Microservice Web Application for Cyber Ranges
    de-Marcos, Luis
    Rodriguez, Daniel
    Gutierrez-Martinez, Jose-Maria
    Dominguez-Diaz, Adrian
    Caro-Alvaro, Sergio
    CENTRAL EUROPEAN CONFERENCE ON INFORMATION AND INTELLIGENT SYSTEMS, CECIIS, 2023, : 517 - 523
  • [18] Scenario Design and Validation for Next Generation Cyber Ranges
    Russo, Enrico
    Costa, Gabriele
    Armando, Alessandro
    2018 IEEE 17TH INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS (NCA), 2018,
  • [19] The Cyber-MAR Project: First Results and Perspectives on the Use of Hybrid Cyber Ranges for Port Cyber Risk Assessment
    Jacq, Olivier
    Salazar, Pablo Gimenez
    Parasuraman, Kamban
    Kuusijarvi, Jarkko
    Gkaniatsou, Andriana
    Latsa, Evangelia
    Amditis, Angelos
    PROCEEDINGS OF THE 2021 IEEE INTERNATIONAL CONFERENCE ON CYBER SECURITY AND RESILIENCE (IEEE CSR), 2021, : 409 - 414
  • [20] Developing Cyber-risk Centric Courses and Training Material for Cyber Ranges: A Systematic Approach
    Erdogan, Gencer
    Alvarez Romero, Antonio
    Zazzeri, Niccolo
    Zitnik, Anze
    Basile, Mariano
    Aprile, Giorgio
    Osorio, Mafalda
    Pani, Claudia
    Kechaoglou, Ioannis
    ICISSP: PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON INFORMATION SYSTEMS SECURITY AND PRIVACY, 2021, : 702 - 713