摘要
提出了一种3层次的主动网络节点操作系统(NodeOS)结构模型,即硬件抽象层、资源管理层和NodeOS-EEAPI层,详细讨论了每一层上的主要功能及实现机制。还讨论了基于授权的主动节点安全体系,它将分布式授权、安全策略管理、基于授权的访问控制、数据包起源授权及完整性控制有机地结合起来,保证了主动节点和主动包的安全。
This paper proposes a three-layered structural model for the node operating system (NodeOS) in an active network, including hardware abstraction layer, resource management layer and NodeOS-EE API layer, and discusses at length their primary functions and implementing mechanisms. This paper also investigates the authorization enforcement based security architecture of active node. This architecture properly combines distributed authorization, policy management, authorization based access control, authentication with integrity control of active packets to ensure the security of active nodes and active packets.
出处
《计算机工程》
EI
CAS
CSCD
北大核心
2005年第14期119-121,共3页
Computer Engineering
基金
国家自然科学基金资助项目(60173049)
安徽省自然科学基金资助项目(03042211)