Resonance: Dynamic Access Control for Enterprise Networks

被引:0
|
作者
Nayak, Ankur
Reimers, Alex
Feamster, Nick
Clark, Russ
机构
来源
WREN 2009 | 2009年
关键词
enterprise networks; access control; programmable networks;
D O I
暂无
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Enterprise network security is typically reactive, and it relies heavily on host security and middleboxes. This approach creates complicated interactions between protocols and systems that can cause incorrect behavior and slow response to attacks. We argue that imbuing the network layer with mechanisms for dynamic access control can remedy these ills. We propose Resonance, a system for securing enterprise networks, where the network elements themselves enforce dynamic access control policies based on both flow-level information and real-time alerts. Resonance uses programmable switches to manipulate traffic at lower layers; these switches take actions (e.g., dropping or redirecting traffic) to enforce high-level security policies based on input from both higher-level security policies and distributed monitoring and inference systems. We describe the design of Resonance, apply it to Georgia Tech's network access control system, show how it can both overcome the current shortcomings and provide new security functions, describe our proposed deployment, and discuss open research questions.
引用
收藏
页码:11 / 18
页数:8
相关论文
共 50 条
  • [1] Architectural design of an access control system for enterprise networks
    Kirimer, Burak
    Ozgit, Attila
    [J]. 2007 22ND INTERNATIONAL SYMPOSIUM ON COMPUTER AND INFORMATION SCIENCES, 2007, : 352 - 357
  • [2] Path-based access control for enterprise networks
    Burnside, Matthew
    Keromytis, Angelos D.
    [J]. INFORMATION SECURITY, PROCEEDINGS, 2008, 5222 : 191 - 203
  • [3] Dynamic Access Control Framework for Enterprise Content Management Systems
    Hocine, Nadia
    Bokhari, Ismail
    [J]. SECRYPT 2021: PROCEEDINGS OF THE 18TH INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY, 2021, : 647 - 652
  • [4] Dynamic User Association in Enterprise Small Cell Networks with Hybrid Access
    Wang, Xiaoxiao
    Shen, Cong
    [J]. 2017 IEEE WIRELESS COMMUNICATIONS AND NETWORKING CONFERENCE (WCNC), 2017,
  • [5] Dynamic Access Control In Wireless Sensor Networks
    Iqbal, Ummer
    [J]. 2017 4TH INTERNATIONAL CONFERENCE ON ADVANCED COMPUTING AND COMMUNICATION SYSTEMS (ICACCS), 2017,
  • [6] Policy reconciliation for access control in dynamic cross-enterprise collaborations
    Preuveneers, D.
    Joosen, W.
    Ilie-Zudor, E.
    [J]. ENTERPRISE INFORMATION SYSTEMS, 2018, 12 (03) : 279 - 299
  • [7] Application model for privileged account access control system in enterprise networks
    Sindiren, Erhan
    Ciylan, Bunyamin
    [J]. COMPUTERS & SECURITY, 2019, 83 : 52 - 67
  • [8] Design of a medium access control protocol for dynamic spectrum access networks
    Mishra, Amitabh
    Agrawal, Dharma P.
    [J]. 2007 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS, VOLS 1-14, 2007, : 5969 - +
  • [9] Dynamic cooperative media access control for wireless networks
    Cao, Bin
    Li, Yun
    Wang, Chonggang
    Feng, Gang
    [J]. WIRELESS COMMUNICATIONS & MOBILE COMPUTING, 2015, 15 (13): : 1759 - 1772
  • [10] A New Dynamic Access Control in Wireless Sensor Networks
    Huang, Hui-Feng
    Liu, Kuo-Ching
    [J]. 2008 IEEE ASIA-PACIFIC SERVICES COMPUTING CONFERENCE, VOLS 1-3, PROCEEDINGS, 2008, : 901 - +