A Model Based on Domain for Access Control Policy Refinement and Its Implementation

Kuangyi ZENG,Jinxiang ZHANG,Jiahai YANG
DOI: https://doi.org/10.3969/j.issn.1000-3428.2006.11.050
2006-01-01
Abstract:A new model for policy refinement is presented at the application background of CERNET.Using the properties of access control list(ACL) in this model,the policies described in different specification languages are mapped into access control lists,which are distributed to different network devices to enforce.Thus,the complex transformation logic in traditional policy refinement fashion is simplified,especially,security and access control configuration management can be automated
What problem does this paper attempt to address?