A Secure Active Network Environment architecture: Realization in SwitchWare

被引:42
|
作者
Alexander, DS [1 ]
Arbaugh, WA [1 ]
Keromytis, AD [1 ]
Smith, JM [1 ]
机构
[1] Univ Penn, CIS Dept, Philadelphia, PA 19104 USA
来源
IEEE NETWORK | 1998年 / 12卷 / 03期
关键词
D O I
10.1109/65.690960
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
An active network is a network infrastructure which is programmable on a per-user or even per-packet basis. Increasing the flexibility of such network infrastructures invites new security risks. Coping with these security risks represents the most fundamental contribution of active network research.;The security concerns can be divided into those which affect the network as a whole and those which affect individual elements. It is clear that the element problems must be solved first, since the integrity of network-level solutions will be based on trust in the network elements. In this article we describe the architecture and implementation of a Secure Active Network Environment (SANE), which we believe provides a basis for implementing secure network-level solutions. We guarantee that a node begins operation in a trusted state with the AEGIS secure bootstrap architecture. We guarantee that the system remains in a trusted state by applying dynamic integrity checks in the network element's runtime system, using a novel naming system, and applying node-to-node authentication when needed.
引用
收藏
页码:37 / 45
页数:9
相关论文
共 50 条
  • [1] Secure active network environment architecture: realization in switchware
    Alexander, D.Scott
    Arbaugh, William A.
    Keromytis, Angelos D.
    Smith, Jonathan M.
    IEEE Network, 12 (03): : 37 - 45
  • [2] The SwitchWare active network architecture
    Alexander, DS
    Arbaugh, WA
    Hicks, MW
    Kakkar, P
    Keromytis, AD
    Moore, JT
    Gunter, CA
    Nettles, SM
    Smith, JM
    IEEE NETWORK, 1998, 12 (03): : 29 - 36
  • [3] SwitchWare active network architecture
    Alexander, D.Scott
    Arbaugh, William A.
    Hicks, Michael W.
    Kakkar, Pankaj
    Keromytis, Angelos D.
    Moore, Jonathan T.
    Gunter, Carl A.
    Nettles, Scott M.
    Smith, Jonathan M.
    IEEE Network, 12 (03): : 29 - 36
  • [4] Design of secure system architecture model for active network
    Xia, Zheng-You
    Zhang, Shi-Yong
    Ruan Jian Xue Bao/Journal of Software, 2002, 13 (08): : 1352 - 1360
  • [5] A Cluster-Based Secure Active Network Environment
    CHEN Xiao-lin 1
    2.State Key Laboratory of Novel Software Technology
    WuhanUniversityJournalofNaturalSciences, 2005, (01) : 142 - 146
  • [6] Secure Mobile Content Delivery Architecture in Hybrid Network Environment
    Hu, Chih-Lin
    Cho, Chien-An
    Wang, Po-Jung
    INTERNATIONAL SYMPOSIUM ON UBIQUITOUS MULTIMEDIA COMPUTING, PROCEEDINGS, 2008, : 69 - 72
  • [7] Realization of a secure active and programmable network infrastructure via mobile agent technology
    Karnouskos, S
    COMPUTER COMMUNICATIONS, 2002, 25 (16) : 1465 - 1476
  • [8] Secure fast handoff mechanism in wireless active network environment
    Kim, Insu
    Kim, Keecheon
    ALPIT 2007: PROCEEDINGS OF THE 6TH INTERNATIONAL CONFERENCE ON ADVANCED LANGUAGE PROCESSING AND WEB INFORMATION TECHNOLOGY, 2007, : 409 - +
  • [9] Secure Environment Architecture for MPSoCs
    Oliveira, Bruno Scherer
    Medina, Henrique
    Sant'Ana, Anderson
    Moraes, Fernando Gehm
    2018 31ST SYMPOSIUM ON INTEGRATED CIRCUITS AND SYSTEMS DESIGN (SBCCI), 2018,
  • [10] Secure active network prototypes
    Murphy, SL
    Lewis, ET
    Watson, RNM
    DARPA ACTIVE NETWORKS CONFERENCE AND EXPOSITION, PROCEEDINGS, 2002, : 166 - 181