期刊文献+

访问控制技术在SSL VPN系统中的应用 被引量:13

Application of access control technology to SSL VPN system and its implementation
下载PDF
导出
摘要 采用了NAP和NAC的核心思想,设计了SSLVPN客户端安全状态检测系统,用于确保SSLVPN客户端的安全性.检测系统通过对客户端的防火墙、反病毒软件和系统补丁的检测来保护其不受病毒、恶意代码的侵害和黑客的攻击.在SSLVPN服务器设计了访问控制系统用于控制不同客户端的接入请求,控制的依据是VPN客户端安全状态检测的结果,对客户端访问控制进一步增强了SSLVPN系统的安全性能. On the basis of NAP's and NAC's kernel philosophy, a security detecting system on the client sides of SSL VPN was designed to guarantee user's security. The detection system protects the client from the hostile infringement of virus, malevolent code and being attacked by hacker through the detection to firewall, anti-virus software, OS patch in VPN client. An access control system was designed in SSL VPN server to control the access requests of different VPN clients. It is based on the result of client security state. The access control to requests of SSL VPN clients further enhances SSL VPN system security performance.
出处 《华中科技大学学报(自然科学版)》 EI CAS CSCD 北大核心 2006年第7期49-52,共4页 Journal of Huazhong University of Science and Technology(Natural Science Edition)
基金 国家自然科学基金资助项目(60373088).
关键词 SSL VPN系统 客户端 安全状态 访问控制 SSL VPN (Security Socket Layer Virtual Private Network) system client sides security state access control
  • 相关文献

参考文献2

二级参考文献11

  • 1Cohen R.On the establishment of an access VPN in broadband access networks[J].Communications Magazine,IEEE February 2003,41(2):156-163.
  • 2Kent S,Atkinson R.Security architecture for the internet protocol[S].RFC2401,November 1998.
  • 3Dierks T,Allen C.The TLS protocol version 1.0[S].RFC2246,January 1999.
  • 4Rescorla E,Schiffman A.The secure HyperText transfer protocol[S].RFC2660,August 1999.
  • 5Sandhu R S,Coyne E J,Feinstein H,Youman C.Role-based access control models[J].IEEE Computer,1996,29(2):38-47.
  • 6Dimitrakos T,Djordjevic I,Matthews B,et al.Policy-driven access control over a distributed firewall architecture[J].Policies for Distributed Systems and Networks,2002:228-231.
  • 7Jason J,Rafalow L,Vyncke E.IPSec configuration policy information model[S].RFC3585,August 2003.
  • 8Xin Guo,Kun Yang,Galis A,et al.A Policy-based network management system for IP VPN[C].Communication Technology Proceedings,2003.ICCT 2003.2003,(2):1630-1633.
  • 9Ryutov T,Neuman C,Dongho Kim.Integrated access control and intrusion detection for Web servers[J].Parallel and Distributed Systems,IEEE Transactions.September 2003,(14):841-850.
  • 10Bhatt D V,Schulze S,et al.Secure internet access to gateway using secure socket layer[J].Virtual Environments.Human-Computer Interfaces and Measurement Systems.2003:157-162.

共引文献235

同被引文献61

引证文献13

二级引证文献32

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部