A Novel Application-layer Based Access Control Model for SSL VPN

XIA Tao,ZHOU Jing-Li,YU Sheng-Sheng,OUYANG Kai
2006-01-01
Computer Science
Abstract:The use of VPN to securely access the remote servers through Internet is one important technology in the current network security research. However, the tunneling technology of VPN makes it possible to bypass the control of firewall and compromise interior servers based on VPN server. Thus, this paper puts forth the Application-layer based Centralized Information Access Control Model, a new access control model for VPN. It integrates the features of the current mainstream access control models and the working mechanism of anti-virus and intrusion detection. On the basis of VPN communication stream, it also tightly couples access control with VPN tunnel and transmission mechanism to enhance network security. This paper also provides a prototype for the model.
What problem does this paper attempt to address?