首页> 外文学位 >Securing the node of an active network.
【24h】

Securing the node of an active network.

机译:保护活动网络的节点。

获取原文
获取原文并翻译 | 示例

摘要

Active networks aim to provide a software framework that enables network applications to customize the processing of their communication packets. Security is of critical importance to the success of active networking. This thesis presents a design and a description of the implementation for securing the node of an active network using active networking principles. The secure node architecture includes an active node operating system security API, an active security guardian, and quality of protection (QoP) provisions. The architecture supports highly customized and situational policies created by users and applications dynamically. It permits active nodes to satisfy the application-specific dynamic security and protection requirements. The secure node architecture can provide a fundamental base for securing the active network infrastructure.; In addition to the secure node architecture, this thesis also presents the analysis of secure information flow using a type system. Information flow control is concerned with the right of dissemination of information. Secure information flow properly restricts the propagation of sensitive cryptographic data beyond the security API to untrusted environments. The analysis demonstrates that the type system can ensure secure flow enforcement efficiently and therefore provide additional security assurance for active networks.; We describe the integration of secure node architecture into two active network software systems to demonstrate its flexible and innovative features and to present detailed performance results.
机译:主动网络旨在提供一种软件框架,使网络应用程序可以自定义其通信数据包的处理。安全性对于主动网络的成功至关重要。本文提出了一种使用主动组网原理来保护主动网络节点安全的设计方案和实现方法的描述。安全节点体系结构包括活动节点操作系统安全API,活动安全监护人和保护质量(QoP)规定。该体系结构支持由用户和应用程序动态创建的高度自定义和情境策略。它允许活动节点满足特定于应用程序的动态安全性和保护要求。安全节点体系结构可以为保护活动网络基础结构提供基础。除了安全节点架构,本文还对使用类型系统的安全信息流进行了分析。信息流控制与信息传播权有关。安全的信息流适当地限制了敏感密码数据从安全API到不可信环境的传播。分析表明,类型系统可以有效地确保安全的流执行,因此可以为活动网络提供额外的安全保证。我们描述了将安全节点体系结构集成到两个活动的网络软件系统中的过程,以展示其灵活和创新的功能并提出详细的性能结果。

著录项

  • 作者

    Liu, Zhaoyu.;

  • 作者单位

    University of Illinois at Urbana-Champaign.;

  • 授予单位 University of Illinois at Urbana-Champaign.;
  • 学科 Computer Science.
  • 学位 Ph.D.
  • 年度 2001
  • 页码 110 p.
  • 总页数 110
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类 自动化技术、计算机技术;
  • 关键词

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号