摘要
为实现集成、协同和统一的安全管理目标 ,Policy越来越多地应用在安全管理领域。本文考察分析了基于策略的安全管理的四个组成部分 :安全策略的语言表示、信息模型、通信协议和体系结构的现状与趋势后 ,指出其中关键问题是安全策略表示和安全策略在异构环境中的执行。最后 ,通过开发一个原型系统 。
To meet the requirement of security management of integrity,cooperation and unification,policies are increasingly used to the field of security management.In this paper,after analyzed the four parts of security management—specification language,information model,communication protocol and architecture of security policy,we point that the key problems are security policies specification and execution in heterogeneous environment.Finally,a prototype is developed to explore the solution to the key problems.
出处
《计算机应用与软件》
CSCD
北大核心
2005年第3期115-119,共5页
Computer Applications and Software
关键词
信息安全
信息技术
安全管理
安全策略
Security policy Security management Information model Policy specification language Conflict resolution PCIM PIB