首页> 外文会议>IFIP TC6/TC11 international conference on communication and multimedia security >ISDN LAN Access: Remote access security and user profile management
【24h】

ISDN LAN Access: Remote access security and user profile management

机译:ISDN LAN访问:远程访问安全性和用户配置文件管理

获取原文

摘要

Extending local area networks (LANs) to the home is an important area of today's communication technology. Due to its global availability, making use of services offered by public telecommunication infrastructure gives a high connectivity and flexibility. There are different types of global infrastructure available to build such a remote access environment: Public switched telephone network (PSTN) using models and wireless cellular radio systems like groupe special mobile (GSM) are used. However, integrated services digital network (ISDN) will replace modem lines due to its higher bandwidth and more adequate embedding. Such a heterogeneous remote access scheme needs enhanced access and traffic control. This paper demonstrates a router-based solution for enhanced ISDN call management. One of the main advantages is the separation of a strategic module which defines the behavior. However, using dial up lines to access LANs requires additional access control and user authentication. As the user profiles may vary widely, a remote access security policy is introduced, which has to deal with binding the user's access rights to the user profile. This security system is based on an information filotering scheme, which is controlled by the authenticated security servers. The authentication algorithm is interchangeable and different authentication methods can be used simultaneously. These can range from simple password-based schemes for low privileged guest profiles to cryptographic methods like zero knowledge authentication using secure ID cards for high privileged remote access profiles. Previews of future, connection oriented remote access schemes like asynchronous transfer mode-(ATM) based broadband ISDN (B-ISDN) are given.
机译:将本地网络(LAN)扩展到家庭是当今通信技术的重要领域。由于其全球可用性,利用公共电信基础设施提供的服务提供了高的连接和灵活性。使用不同类型的全局基础架构可用于构建这样的远程访问环境:使用使用Groupe特殊移动(GSM)等模型和无线蜂窝无线电系统的公共交换电话网络(PSTN)。但是,由于其较高的带宽和更充分的嵌入,集成服务数字网络(ISDN)将替换调制解调器线路。这种异构的远程访问方案需要增强的访问和流量控制。本文演示了一种基于路由器的解决方案,用于增强ISDN呼叫管理。其中一个主要优点是分离定义行为的战略模块。但是,使用拨号线访问LAN需要额外的访问控制和用户身份验证。由于用户配置文件可以广泛变化,引入远程访问安全策略,其必须处理将用户的访问权限绑定到用户配置文件。此安全系统基于信息文件夹方案,由经过身份验证的安全服务器控制。认证算法是可互换的,可以同时使用不同的认证方法。这些可以从简单的基于密码的方案,用于低特权客户档案,以对高零知识身份验证的加密方法,使用安全ID卡进行高特权远程访问配置文件。给出了未来的预览,给出了基于异步传输模式(ATM)宽带ISDN(B-ISDN)的连接面向远程访问方案。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号