期刊文献+

基于状态IPv4/IPv6安全网关混合策略研究

Research on State-Based Mixed Policy of IPv4/IPv6 Security Gateway
下载PDF
导出
摘要 IPv4到IPv6的渐进式的演化过程中,必然会出现IPv4I、Pv6双协议长期共存的过渡时期,而如何解决不同协议栈通讯时的访问控制问题已经成为IPv4/IPv6互连环境的安全问题中的基本问题。本文分析了一种基于翻译机制的IPv4/IPv6安全网关中包过滤的处理流程,并采用规则树方式描述其基于状态的包过滤混合策略,方便规则管理的同时,提高了匹配效率。 Though Internet Protocol Version 6 has been accepted as the backbone protocol of next generation Internet widely, there is expected to be a long transitional period in which two protocols will coexist. So, how to control the access between the different protocols is the basic issue in security of different networks. Based on IPv4/IPv6 translation mechanism, this paper, after presenting a flow of packet filter in security gateway, describes the mixed rules of state - based packet filtering with a policy tree, which makes both convenient management and high matching efficiency.
出处 《中国电子科学研究院学报》 2006年第3期296-299,共4页 Journal of China Academy of Electronics and Information Technology
关键词 IPV6 访问控制 包过滤 策略 IPv6 Access control Packet filter Policy
  • 相关文献

参考文献5

  • 1[1]RFC 2766-Network Address Translation-Protocol Translation (NAT-PT)
  • 2[2]RFC 2893-Transition Mechanisms for IPv6 Hosts and Routers
  • 3[3]RFC 2460-Internet Protocol,Version 6 (IPv6) Specification
  • 4[4]Errin W.Fulp and Stephen J.Tarsa.Trie-Based Policy Representations for Network Firewalls In Proceedings of the 10th IEEE Symposium on Computers and Communications,2005
  • 5[5]Ehab S.Al-Shaer and Hazem H.Hamed,Modeling and Management of Firewall Policies IEEE Trans.Network and Service Management,2004,1 (1)

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部