首页> 外文期刊>International journal of computer science and network security >An Evaluation of State Model Diagrams for Secure Network Configuration and Management
【24h】

An Evaluation of State Model Diagrams for Secure Network Configuration and Management

机译:安全网络配置和管理的状态模型图评估

获取原文
获取原文并翻译 | 示例

摘要

Dedicated firewall devices are an essential component of all secure networks. Given the importance of these devices it is therefore imperative that they are operate according to the appropriate company security policies. Regardless of the sophistication of the security devices they must be managed by people with the associated scope for human error, particularly during their configuration. PIX firewalls are typically controlled by the text based Command Line Interface (CLI) which requires considerable expertise. Whilst a Graphical User Interface (GUI) is available it is not widely used. Alternative approaches have been employed, such as network management tools, but these are arguably also problematic. These problems are exacerbated by the need to manage the integration of many different technologies (firewalls, wireless devices etc). State Model Diagrams have been successfully used for modeling a wide variety of network technologies and associated protocols. The diagrams are modular and hierarchical thereby providing top down decomposition by means of leveling. For ease of use, hyperlinks may be used for navigation within the interface. This paper demonstrates how the state model technique meets the relevant criteria for a successful Security Human Computer Interface (HCI-S) and hence may be used to manage not only firewalls but also the integration of heterogeneous technologies within a secure environment. An evaluation by twenty experienced network administrators strongly supported this approach. Results to date indicate that the State Model Diagrams may offer a vendor independent, universally applicable interface that can be used for secure device integration and management.
机译:专用防火墙设备是所有安全网络的重要组成部分。考虑到这些设备的重要性,因此必须根据适当​​的公司安全策略进行操作。无论安全设备的复杂程度如何,它们都必须由具有相关人为错误范围的人员来管理,尤其是在配置过程中。 PIX防火墙通常由基于文本的命令行界面(CLI)控制,这需要大量的专业知识。尽管有图形用户界面(GUI)可用,但并未广泛使用。已经采用了替代方法,例如网络管理工具,但是可以说这些也是有问题的。由于需要管理许多不同技术(防火墙,无线设备等)的集成,这些问题更加严重。状态模型图已成功用于对各种网络技术和相关协议进行建模。这些图是模块化和分层的,从而通过调平提供自上而下的分解。为了易于使用,可将超链接用于界面内的导航。本文演示了状态模型技术如何满足成功的安全人机界面(HCI-S)的相关标准,因此不仅可以用于管理防火墙,还可以用于在安全环境中管理异构技术的集成。由二十位经验丰富的网络管理员进行的评估强烈支持此方法。迄今为止的结果表明,状态模型图可能提供独立于供应商的,通用的接口,可用于安全设备集成和管理。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号