首页> 外文会议>Integrated Network Management Proceedings, 2001 IEEE/IFIP International Symposium on >Management of end-to-end security in collaborative IP network environments
【24h】

Management of end-to-end security in collaborative IP network environments

机译:协作IP网络环境中的端到端安全性管理

获取原文

摘要

Growth in popularity of the Internet has spawned a great interest in collaborative IP networks that support collaborative meetings between individuals or groups located at remote stations. The emphasis on security of information transfer during these meetings has made the management of end-to-end security in collaborative IP network environments, that may involve the creation of ad hoc communication networks that contain the Internet as an intermediate network, an important research issue. Addition of security features through standard methods gives rise to complex incompatibility problems resulting from the specific routing and address translation schemes that may be in place in these networks. The development of enhanced protocols that remove this incompatibility and ensure interoperability between security functions and address translation functions is discussed in this paper. Detailed steps in ensuring end-to-end security in various cases involving change of IP address, change of both IP address and the port, and the use of encapsulation security payload implemented in transport mode are described. The enhanced protocols presented here support generic implementation in the sense that the implementation of the security-related protocol is transparent to the use or not of the address translation scheme. For providing a proof of concept demonstration of the proposed solutions, the structure of a prototype collaborative network, which employs the Internet as an intermediate communication medium for supporting videoconferencing between remote stations, is outlined.
机译:互联网的普及引起了人们对协作IP网络的极大兴趣,这些网络支持位于远程站点的个人或团体之间的协作会议。这些会议期间对信息传输安全性的强调使协作IP网络环境中的端到端安全性管理成为可能,这涉及建立包含Internet作为中间网络的临时通信网络,这是一个重要的研究问题。 。通过标准方法添加安全功能会导致复杂的不兼容问题,这是由这些网络中可能存在的特定路由和地址转换方案引起的。本文讨论了增强协议的开发,该协议消除了这种不兼容性,并确保了安全功能和地址转换功能之间的互操作性。描述了在各种情况下确保端到端安全性的详细步骤,包括更改IP地址,更改IP地址和端口以及使用在传输模式下实现的封装安全性有效负载。从安全性相关协议的实现对于地址转换方案的使用或不透明的意义上来说,此处介绍的增强协议都支持通用实现。为了提供所提出的解决方案的概念证明,概述了原型协作网络的结构,该网络采用Internet作为支持远程站之间视频会议的中间通信介质。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号