Abstract:
Creation of the powerful centralized centers of attacks detection, servicing a large number of clients, possesses obvious positive properties. However, such systems generate a new class of the attacks connected with a need to service a flow of incidents, arriving from different clients. Such flow can generate a queue preventing effective detection of attacks. These problems are described by queue models. Some results of attacks simulation by means of queuing systems are presented.