首页> 外文会议>Military Communications Conference Proceedings >Application of virtual private networking technology to standards-based management protocols across heterogeneous firewall-protected networks
【24h】

Application of virtual private networking technology to standards-based management protocols across heterogeneous firewall-protected networks

机译:虚拟私有网络技术在异构防火墙网络上的基于标准的基于标准的管理协议中的应用

获取原文

摘要

There has been tremendous growth within DoD of enterprise-wide COTS-based messaging and communications systems, including the Defense Message System, the Global Command and Control System, and the Global Combat Support System. To economize on development costs, standards-based protocols-including SMTP, SNMP, FTP, Telnet, and HTTP-are used to implement the underlying functionality of these systems, including messaging and service management. Vulnerabilities in such standards-based protocols have been identified, and security over the Internet and its connected systems has become an ever-increasing concern. Network security policies have been created to address the dilemma of protecting local systems from external attack while permitting easy communications between authorized parties. A burgeoning industry of firewall manufacturers has arisen to meet the challenge of implementing these policies effectively, safely, and reliably. Virtual private networking (VPN) technology was developed to enable separate firewall-protected enclaves to safely exchange data over unsecured networks. This technology is still maturing and standardized-using IPSec, ISAKMP, and DES encryption-to enable separate VPN implementations to interoperate over shared networks. This paper studies how virtual private networking technology can be employed to protect the use of standards-based service management protocols-including FTP, Telnet, SNMP, and NTP-across heterogeneous firewall-protected networks, balancing the requirements of enterprise service management with the need for local-level network security.
机译:在企业范围的基于COTS的消息传递和通信系统中,包括防御消息系统,全局指挥和控制系统以及全球战斗支持系统,在国防部具有巨大增长。为了节省开发成本,基于标准的协议 - 包括SMTP,SNMP,FTP,TELNET和HTTP - 用于实现这些系统的基础功能,包括消息传递和服务管理。已经确定了基于标准的协议中的漏洞,并通过互联网及其连接系统的安全性成为不断增加的问题。已经创建了网络安全策略来解决保护本地系统免受外部攻击的困境,同时允许授权方之间轻松通信。防火墙制造商的新兴行业出现,以满足有效,安全,可靠地实施这些政策的挑战。开发了虚拟私有网络(VPN)技术,以便使单独的防火墙保护的环路能够通过不安全的网络安全地交换数据。此技术仍然仍然成熟和标准化 - 使用IPSec,ISAKMP和DES加密 - 以使单独的VPN实现能够互操作共享网络。本文研究了虚拟专用网络技术如何保护使用基于标准的服务管理协议 - 包括FTP,Telnet,SNMP和NTP - 跨越异构防火墙保护网络,平衡了企业服务管理的需求对于本地级网络安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号