首页> 外国专利> AUTOMATED GENERATION OF ACCESS CONTROL RULES FOR USE IN A DISTRIBUTED NETWORK MANAGEMENT SYSTEM THAT USES A LABEL-BASED POLICY MODEL

AUTOMATED GENERATION OF ACCESS CONTROL RULES FOR USE IN A DISTRIBUTED NETWORK MANAGEMENT SYSTEM THAT USES A LABEL-BASED POLICY MODEL

机译:使用基于标签的策略模型的分布式网络管理系统中使用的访问控制规则的自动生成

摘要

An access control rule authorizing communication between a plurality of managed servers within an administrative domain is determined. Communication information describing past communication between the plurality of managed servers is obtained. A subset of managed servers from the plurality of managed servers is identified by grouping the plurality of managed servers based on the obtained communication information. A group-level label set is determined to associate with the subset of managed servers. Role labels are determined for managed servers in the subset of managed servers. A managed server is associated with one role label. Based on the group-level label set and the role labels, an access control rule is generated authorizing communication between a first managed server of the subset of managed servers and a second managed server. The access control rule is stored as part of an administrative domain-wide management policy.
机译:确定授权在管理域内的多个被管理服务器之间进行通信的访问控制规则。获得描述多个被管理服务器之间的过去通信的通信信息。通过基于所获得的通信信息对多个被管理服务器进行分组来识别来自多个被管理服务器的被管理服务器的子集。确定组级别标签集以与受管服务器的子集相关联。确定受管服务器子集中的受管服务器的角色标签。受管服务器与一个角色标签关联。基于组级标签集和角色标签,生成访问控制规则,以授权在被管理服务器子集中的第一被管理服务器和第二被管理服务器之间进行通信。访问控制规则存储为整个域管理策略的一部分。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号