Research on key technologies of network security management policy
Tang Chenghua,Yu Shunzheng
DOI: https://doi.org/10.1109/WiCom.2008.2919
2008-01-01
Abstract:For purpose of managing network security policy duly and flexibly in the complex network environment, and resolving its issue efficiency, this paper proposes network security policy self-adaptive management and distribution model. An incident triggered, policy-driven and self-adaptive management mechanism is established, and the impact of safety equipment or user requests, such as system resources found on the flow control can be calculated automatically. The distribution model is given to response policy request rapidly, take the appropriate policy dissemination methods, and reduce PDP computing tasks, system resource consumption, as well as between the PDP and PEP data transmission volume, which introduces the concepts of issue affecting factors, security domain addresses allocation, etc. The effectiveness of the proposed model and algorithms is proved by experiments. © 2008 IEEE.