首页> 外文会议>International Symposium on Networks, Computers and Communications >Common policy language for Policy Compliance and Change Detection System in managed service in data networks
【24h】

Common policy language for Policy Compliance and Change Detection System in managed service in data networks

机译:数据网络中托管服务中策略合规性和变更检测系统的通用策略语言

获取原文

摘要

As networks continue to grow exponentially, the need to build, maintain, and troubleshoot the growing number of heterogeneous network components has also increased significantly. Often times, scheduled and ad-hoc configuration changes lead to potential configuration errors, policy violations, inefficiencies, and vulnerable states. The current network management landscape offers a variety of configuration auditing tools to reduce risks and achieve compliance. However; they mostly operate in an offline fashion and lack real time reporting capabilities. In our previous work, we proposed an Automated Policy Compliance and Change Detection System capable of audit configurations against internal policies or external best practices and provide centralized reporting for monitoring and regulatory purposes in real time. One of the core requirements for our proposed system is a common policy language for expressing device and organizational policies. This paper defines some of the building blocks of the proposed policy language. A common policy language that will ease the enforcement of policies to all components of the network. Furthermore, the proposed common policy language will bring numerous practical advantages, such as lowering implementation overhead, as well as the possibility to use the same or at least similar tools to maintain the policies.
机译:随着网络的继续呈指数级增长,建立,维护和排除数量不断增长的异构网络组件故障的需求也已大大增加。通常,计划的和临时的配置更改会导致潜在的配置错误,策略违规,效率低下和易受攻击的状态。当前的网络管理环境提供了各种配置审核工具,以降低风险并实现合规性。然而;它们大多以离线方式运行,并且缺乏实时报告功能。在我们以前的工作中,我们提出了一个自动化的策略合规性和变更检测系统,该系统能够根据内部策略或外部最佳实践来审核配置,并提供集中的报告以实时进行监视和监管。我们提出的系统的核心要求之一是用于表达设备和组织策略的通用策略语言。本文定义了所提议策略语言的一些构建块。一种通用的策略语言,可以简化对网络所有组件的策略实施。此外,提出的通用策略语言将带来许多实际的优势,例如降低实施开销,以及使用相同或至少相似的工具来维护策略的可能性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号