Security evaluation model of the information system based on the security characteristic measure for the key

Qingyu Ou, Dawei Zhou · 2010

In the current information system, cryptography technology is widely applied to protect the sensitive information, so the amount of the used key is large and its correlation is complex. To evaluate the security state of the pivotal area and element of the system, a security evaluation scheme for the key based on the security characteristic measure is proposed in this paper. By the means of formalization, the model of the key in the system is constructed, and the security condition of the key is analyzed. In addition, to reflect the layer and the change of the security property for the key, the security state of all sorts of keys are measured objectively by integrating the security level and the probability of uncontrollability. The experiment shows that, the category, layer and updating frequency of the key can be considered, so the security of the key can be estimated objectively and reliably to achieve the security of the information system.

Read the paper · More papers on PaperTik