Network security policy for large-scale VPN

被引:0
|
作者
Shan, RS [1 ]
Li, SH [1 ]
Wang, MZ [1 ]
Li, JH [1 ]
机构
[1] Shanghai Jiao Tong Univ, Dept Elect Engn, Shanghai 200030, Peoples R China
关键词
trusted domain; security policy; VPN;
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
In the current VPN, manual security policy configuration is usually inefficient and error-prone. The paper studies the problem of conflicts among policies in different domains of a large-scale VPN. In this paper, a new trusted domain and a novel security transmission model as the fundament of the security theory of VPN are defined, and based on them, the exact definition of security transmission requirements and the corresponding effective security policies for a large-scale V'PN are proposed. In addition, this paper gives the principles of policy verification for the purpose of checking the consistence of security policies in the whole network environment.
引用
收藏
页码:217 / 220
页数:4
相关论文
共 50 条
  • [1] Distributed measurement policy protocol for large-scale network
    Zhang, GM
    Xing, CY
    Chen, M
    International Symposium on Communications and Information Technologies 2005, Vols 1 and 2, Proceedings, 2005, : 30 - 33
  • [2] Fault Localization in Large-Scale Network Policy Deployment
    Tammana, Praveen
    Nagarajan, Chandra
    Mamillapalli, Pavan
    Kompella, Ramana Rao
    Lee, Myungjin
    2018 IEEE 38TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS (ICDCS), 2018, : 54 - 64
  • [3] Situation prediction of large-scale Internet of Things network security
    Wenjun Yang
    Jiaying Zhang
    Chundong Wang
    Xiuliang Mo
    EURASIP Journal on Information Security, 2019
  • [4] Situation prediction of large-scale Internet of Things network security
    Yang, Wenjun
    Zhang, Jiaying
    Wang, Chundong
    Mo, Xiuliang
    EURASIP JOURNAL ON INFORMATION SECURITY, 2019, 2019 (01)
  • [5] Large-scale automated forecasting for network safety and security monitoring
    Naveiro, Roi
    Rodriguez, Simon
    Rios Insua, David
    APPLIED STOCHASTIC MODELS IN BUSINESS AND INDUSTRY, 2019, 35 (03) : 431 - 447
  • [6] EasyScale: Easy Mapping for Large-Scale Network Security Experiments
    Yao, Wei-Min
    Fahmy, Sonia
    Zhu, Jiahong
    2013 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2013, : 269 - 277
  • [7] Security Situation Analysis and Prediction System for Large-scale Network SSAP
    Han, WeiHong
    Wang, QingGuang
    2012 7TH INTERNATIONAL CONFERENCE ON COMPUTING AND CONVERGENCE TECHNOLOGY (ICCCT2012), 2012, : 1125 - 1129
  • [8] AN ALGORITHM OF LARGE-SCALE APPROXIMATE MULTIPLE STRING MATCHING FOR NETWORK SECURITY
    Song, Tian
    Xue, Yibo
    Wang, Dongsheng
    2006 FIRST INTERNATIONAL CONFERENCE ON COMMUNICATIONS AND NETWORKING IN CHINA, 2006,
  • [9] Train rescheduling for large-scale disruptions in a large-scale railway network
    Zhang, Chuntian
    Gao, Yuan
    Cacchiani, Valentina
    Yang, Lixing
    Gao, Ziyou
    TRANSPORTATION RESEARCH PART B-METHODOLOGICAL, 2023, 174
  • [10] Large-scale network visualization
    Abello, J
    Koutsofios, E
    Gansner, ER
    North, SC
    COMPUTER GRAPHICS-US, 1999, 33 (03): : 13 - 15