首页> 外文会议>IEEE international conference on signal processing systems >Research on Application of Role-Based Access Control in SSL VPN
【24h】

Research on Application of Role-Based Access Control in SSL VPN

机译:基于角色的访问控制在SSL VPN中的应用研究

获取原文

摘要

SSL VPN system is based on encryption and authentication provided by SSL. Compared with other VPN (1PSEC VPN, PPTP VPN, etc.), SSL VPN has the advantages of convenience, fine-grained access control and so on. Access control technology plays an important role in SSL VPN System, which aims at preventing unauthorized access. In order to protect server on the intranet from users' attack or invasion, this paper proposes a dynamic role-based access control method for SSL VPN. In which a data detection module is configured at the server side to detect the illegal access of users logged in SSL VPN system. The detection results will be fed back to the dynamic access control. Then the dynamic access control module will adjust the access control policy based on the detection results and a hierarchical recycling method based on RBAC (role-based access control) is proposed to recycle user's permissions. The test results show that the proposed method can make permission assignment more reasonable and ensure the safety of the system.
机译:SSL VPN系统基于SSL提供的加密和身份验证。与其他VPN(1PSEC VPN,PPTP VPN等)相比,SSL VPN具有便捷,访问控制细化等优点。访问控制技术在旨在防止未经授权的访问的SSL VPN系统中扮演着重要角色。为了保护Intranet上的服务器免受用户的攻击或入侵,本文提出了一种基于动态的基于角色的SSL VPN访问控制方法。其中在服务器端配置了数据检测模块,以检测登录SSL VPN系统的用户的非法访问。检测结果将反馈给动态访问控制。然后,动态访问控制模块将根据检测结果调整访问控制策略,并提出了一种基于RBAC的分层回收方法(基于角色的访问控制),以回收用户的权限。测试结果表明,该方法可以使权限分配更加合理,保证系统的安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号