期刊文献+

A Cluster-Based Secure Active Network Environment

A Cluster-Based Secure Active Network Environment
下载PDF
导出
摘要 We introduce a cluster-based secure active network environment (CSANE) which separates the processing of IP packets from that of active packets in active routers. In this environment, the active code authorized or trusted by privileged users is executed in the secure execution environment (EE) of the active router, while others are executed in the secure EE of the nodes in the distributed shared memory (DSM) cluster. With the supports of a multi-process Java virtual machine and KeyNote, untrusted active packets are controlled to securely consume resource. The DSM consistency management makes that active packets can be parallely processed in the DSM cluster as if they were processed one by one in ANTS (Active Network Transport System). We demonstrate that CSANE has good security and scalability, but imposing little changes on traditional routers. We introduce a cluster-based secure active network environment (CSANE) which separates the processing of IP packets from that of active packets in active routers. In this environment, the active code authorized or trusted by privileged users is executed in the secure execution environment (EE) of the active router, while others are executed in the secure EE of the nodes in the distributed shared memory (DSM) cluster. With the supports of a multi-process Java virtual machine and KeyNote, untrusted active packets are controlled to securely consume resource. The DSM consistency management makes that active packets can be parallely processed in the DSM cluster as if they were processed one by one in ANTS (Active Network Transport System). We demonstrate that CSANE has good security and scalability, but imposing little changes on traditional routers.
出处 《Wuhan University Journal of Natural Sciences》 CAS 2005年第1期142-146,共5页 武汉大学学报(自然科学英文版)
基金 SupportedbytheNationalNaturalScienceFoundationofChina(60363001),theNationalHighTechnologyDevelopment863ProgramofChina(2001AA113050)andtheNationalGrandFundamentalResearch973ProgramofChina(2002CB312002)
关键词 active networks SECURITY DSM Key words active networks security DSM
  • 相关文献

参考文献4

  • 1Merugu S,Bhattacharjee S,Zegura E,et al.Bowman: A Node OS for Active Networks[].IEEE Communications Magazine.1998
  • 2Wetherall D,Guttag J,Tennenhouse D L.ANTS: Network Services Without the Red Tape[].IEEE Computer.1999
  • 3Alexander D S,Arbaugh W A,Keromytis A D,et al.A Secure Active Network Environment Architecture: Realization in Swichware[].IEEE Network Magazine.1998
  • 4Tenenhouse D L,Smith J M,Sincoskie W D,et al.A Survey of Active Network Research[].IEEE Communications Magazine.1997

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部