Network security policy for large-scale VPN

被引:0
|
作者
Shan, RS [1 ]
Li, SH [1 ]
Wang, MZ [1 ]
Li, JH [1 ]
机构
[1] Shanghai Jiao Tong Univ, Dept Elect Engn, Shanghai 200030, Peoples R China
关键词
trusted domain; security policy; VPN;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In the current VPN, manual security policy configuration is usually inefficient and error-prone. The paper studies the problem of conflicts among policies in different domains of a large-scale VPN. In this paper, a new trusted domain and a novel security transmission model as the fundament of the security theory of VPN are defined, and based on them, the exact definition of security transmission requirements and the corresponding effective security policies for a large-scale V'PN are proposed. In addition, this paper gives the principles of policy verification for the purpose of checking the consistence of security policies in the whole network environment.
引用
收藏
页码:217 / 220
页数:4
相关论文
共 50 条
  • [21] PKI Security in Large-Scale Healthcare Networks
    Georgios Mantas
    Dimitrios Lymberopoulos
    Nikos Komninos
    Journal of Medical Systems, 2012, 36 : 1107 - 1116
  • [22] LARGE-SCALE SECURITY DISPATCHING - AN EXACT MODEL
    BURCHETT, RC
    HAPP, HH
    IEEE TRANSACTIONS ON POWER APPARATUS AND SYSTEMS, 1983, 102 (09): : 2995 - 2999
  • [23] Large-Scale Analysis of the Security of Embedded Firmwares
    Costin, Andrei
    Zaddach, Jonas
    Francillon, Aurelien
    Balzarotti, Davide
    PROCEEDINGS OF THE 23RD USENIX SECURITY SYMPOSIUM, 2014, : 95 - 110
  • [24] Preserving Security and Privacy in Large-Scale VANETs
    Qin, Bo
    Wu, Qianhong
    Domingo-Ferrer, Jose
    Zhang, Lei
    INFORMATION AND COMMUNICATIONS SECURITY, 2011, 7043 : 121 - +
  • [25] PatchDB: A Large-Scale Security Patch Dataset
    Wang, Xinda
    Wang, Shu
    Feng, Pengbin
    Sun, Kun
    Jajodia, Sushil
    51ST ANNUAL IEEE/IFIP INTERNATIONAL CONFERENCE ON DEPENDABLE SYSTEMS AND NETWORKS (DSN 2021), 2021, : 149 - 160
  • [26] A Large-Scale Empirical Study of Security Patches
    Li, Frank
    Paxson, Vern
    CCS'17: PROCEEDINGS OF THE 2017 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2017, : 2201 - 2215
  • [27] Large-scale validation of a security inspection model
    Drury, Colin G.
    Ghylin, Kimberley M.
    Schwaninger, Adrian
    CONTEMPORARY ERGONOMICS 2007, 2007, : 209 - 214
  • [28] Security Improvement on An Efficient Key Distribution Mechanism for Large-scale Wireless Sensor Network
    Xue, Kaiping
    Hong, Peilin
    Lu, Hancheng
    Zhu, Bin
    Li, Le
    2008 2ND INTERNATIONAL CONFERENCE ON ANTI-COUNTERFEITING, SECURITY AND IDENTIFICATION, 2008, : 140 - 143
  • [29] A Topology Visualization Early Warning Distribution Algorithm for Large-Scale Network Security Incidents
    He, Hui
    Fan, Guotao
    Ye, Jianwei
    Zhang, Weizhe
    SCIENTIFIC WORLD JOURNAL, 2013,
  • [30] Large-scale network simulations with GTNets
    Riley, GR
    PROCEEDINGS OF THE 2003 WINTER SIMULATION CONFERENCE, VOLS 1 AND 2, 2003, : 676 - 684