首页> 外文会议>IASTED International Conference on Communications, Internet, and Information Technology >Framework for the Policy-Based Security Management of a Computer Network
【24h】

Framework for the Policy-Based Security Management of a Computer Network

机译:基于策略的计算机网络安全管理框架

获取原文

摘要

We introduce a framework for managing security of a large dynamic network. The framework is based on a manager agent concept. The central manager stores security policies and monitors network topology and states in real time. An agent installed in a managed node reports the security related state to the manager and executes management commands received from the manager. When the manager finds a change in network topology or state, it checks if the network state after the change conforms to security policies. If any deviation is found, the manager plans/executes management commands to return the network into the state conforming to policies. In this paper we describe the framework for the network security management and the security policy specification language.
机译:我们介绍了管理大型动态网络安全性的框架。 该框架基于经理代理概念。 中央经理将安全策略存储安全策略并实时监控网络拓扑和状态。 安装在受管节点中的代理将安全相关状态报告给管理器,并执行从管理器接收的管理命令。 当管理器发现网络拓扑或状态的更改时,它会检查更改后的网络状态是否符合安全策略。 如果找到任何偏差,则管理器计划/执行管理命令以将网络返回到符合策略的状态。 在本文中,我们描述了网络安全管理和安全策略规范语言的框架。

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号