期刊文献+

主动网络节点的安全机制研究 被引量:5

Study on the Security Mechanism of Active Network
下载PDF
导出
摘要 1.引言 主动网络是一种可编程的分组交换网络,用户可以直接向网络节点插入用户定制的程序来配置或扩展网络的功能;也可以通过在报文分组中包含可执行的程序代码段,这些程序代码段由网络节点激活执行来修改或扩展网络的基础配置。主动网络的潜在优点是快速动态定制、配置网络中新的服务,提高网络的性能,使网络系统更具有灵活性、可扩展性[1,2]。主动网络通过提供通用的网络可编程接口,允许几乎所有的网络用户按各自的应用要求针对网络节点(路由器)、甚至直接针对报文进行编程并嵌入可执行的代码。 Active Networks offer the ability to program the network on per-router, per-user or even per-packet basis,and promise greater flexibility than current networks. Unfortunately,this added pro-grammability compromises the security of the system by allowing a wider range of potential attack. The active network will not only concern with possible damage to user data and end node,but also consider possible damage as the active packet moves into each node and EE. So enforcing protections at end nodes only is not sufficient for active networks. Securing an active network means that protection mechanisms must move into each node and each EE. Protecting the network as a whole is only possible by building a common protection mechanism into the design of individual nodes and EEs. In this paper,we mainly discuss the security mechanism and techniques how to protect the active network,the problem domain is divided into two particular :protecting active nodes from malicious active code;and protecting active code from malicious active nodes.Based on the study,a security model protecting active network nodes is presented.
出处 《计算机科学》 CSCD 北大核心 2001年第3期46-49,共4页 Computer Science
基金 国家自然科学基金
关键词 计算机网络 网络安全 主动网络 体系结构 入侵检测 Active network,Programmability,Active code ,Security model
  • 相关文献

参考文献9

  • 1[1]Tennenhouse D L,et al. A Survey of Active Network Research. IEEE Communicatioins Magazine, 1997 (Jan.): 80~86 被引量:1
  • 2[2]Smith J M, et al. Activating Networks: A Progress Report. IEEE Computer, 1999(April): 32~41 被引量:1
  • 3[3]Moore J T. Mobile Code Security Techniques. Available at: http://www. dsl. cis. upenn. edu/~jonm. 被引量:1
  • 4[4]Greenberg M S,et al. Mobile Agents and Security. IEEE Communications Magazine, 1998(July): 76~85 被引量:1
  • 5[5]Hicks M,et al. A Secure Plan. Available at: www. cis. upenn. edu/~switchware/papers/ 被引量:1
  • 6[6]Alexander D S,et al. A Secure Active Network Environment Architecture: Realization in SwitchWare. IEEE Network,1998. 37~45 被引量:1
  • 7[7]Alexander DS,Arbangh W A,et al. Safety and Security of Programmable Network Infrastructures. IEEE Communications Magazine, 1998 (Oct.): 84~92 被引量:1
  • 8[8]Marlkhi D,Reiter M K,Rubin A D. Secure Execution of Java Applets Using a Remote Playground. In:Proc. of the 1998 IEEE Symposium on Security and Privacy. Oakland,California,May 1998 被引量:1
  • 9[9]Denning D E. An intrusion detection model. IEEE Trans.On Software Engineering, 1987,13, (2): 222~232 被引量:1

同被引文献14

  • 1王育民 刘建伟.通信网的安全-理论与技术[M].西安:西安电子科技大学出版社,2000.. 被引量:9
  • 2CALVER K L. Architecture Framework for Active Network[DB/OL]. http://www. dcs. uky. edu/~calvert/arch-docs.html,1999-07. 被引量:1
  • 3MURPHY S,LEWIS E,PUGA R,et al. Strong Security for Active Networks [J/OL]. IEEE OPENARCH. http://comet. ctr.columbia. edu/activities/openarch2001/papers2001/OA_06.PDF,2001. 被引量:1
  • 4AN Security Working Group. Security Architecture for Active Nets[ EB/OL]. http://protocols. netlab. uky. edu /~calvert/sec-latest.ps,2001-11. 被引量:1
  • 5AN Security Working Group, Modified by Seraphim Group. Security Architecture for Active Nets[ EB/OL]http://choices.cs. uiuc. edu/Security/seraphim/may2000/securityarchitecture.pdf,1998-11/2000-05. 被引量:1
  • 6AN NodeOS Working Group. NodeOS Interface Specification[ EB/OL]. http ://www.ecs. umass. edu/ece/wolf/ courses/ECE697J/papers/AN_node_OS.pdf ,2001-01. 被引量:1
  • 7PANKAJ Kakkar. The Specification of PLAN [ EB/OL]. http://www.cis. upenn, edu/~switchware/PLAN/spec/spec.ps,1999-07. 被引量:1
  • 8何丹,谢立.一种新型的网络体系结构——主动网络[J].计算机研究与发展,1999,36(1):1-7. 被引量:17
  • 9李一果,温蜀山,孙海荣,李乐民.主动网络的安全技术探讨[J].电子科技大学学报,2000,29(4):402-405. 被引量:5
  • 10李方敏,叶澄清,潘雪增.主动网络体系结构分析和设计[J].通信学报,2000,21(12):90-96. 被引量:9

引证文献5

二级引证文献9

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部