摘要
针对虚拟专用网络中IP安全协议规则制定和配置繁杂、易出现冲突等问题,提出对IP安全协议规则集中的保护访问规则表和保护传输规则表进行形式化,进而采用图形管理的方法,开发出IP安全协议规则分析管理工具软件.通过对真实的IP安全协议规则进行分析检测,该软件判断出规则集中所存在的各类冲突.实验结果表明这种形式化模型能很好地管理IP安全协议规则.
The constitution and configuration of IP security protocol (IPSec) rules in virtual private network (VPN) were analyzed. The rule table of protected access and the rule table of protected transmission in IPSec rules set were formalized. The software tool for analyzing and managing IPSec rules were developed by using graphical management methods. By analyzing and detecting the real IPSec rules, the software judged the various conflicts in rules set. The experiment result shows that this formal model really can manage IPSec security rules better
出处
《华中科技大学学报(自然科学版)》
EI
CAS
CSCD
北大核心
2011年第4期65-68,共4页
Journal of Huazhong University of Science and Technology(Natural Science Edition)
基金
黑龙江省教育厅指导项目(9553038)
关键词
网络安全
虚拟专用网
IP安全协议
安全策略
形式化模型
规则冲突
network security
virtual private network
IP security protocol
security policy
formalmodel
rule conflict