A Network Security Policy Self-Adaptive Management And Distribution Model In Complex Network Environment

Chenghua Tang,Shunzheng Yu
2008-01-01
Abstract:For purpose of managing network security policy duly and flexibly in the complex network environment, and resolving its issue efficiency, this paper proposes network security policy self-adaptive management and distribution model. An incident triggered, policy-driven and self-adaptive management mechanism is established, and the impact of safety equipment or user requests, such as system resources found on the flow control can be calculated automatically: The distribution model is given to response policy request rapidly, take the appropriate policy dissemination methods, and reduce PDP computing tasks, system resource consumption, as well as between the PDP and PEP data transmission volume, which introduces the concepts of issue affecting factors, security domain addresses allocation, etc. The effectiveness of the proposed model and algorithms is proved by experiments.
What problem does this paper attempt to address?