摘要
VPN网关是众多涉密内网的典型边界防护设备,其网络访问控制策略的执行情况反映了涉密内网安全状况。选取典型的基于VPN网关的涉密内网,研究探讨网络访问控制策略执行过程中的风险度量问题,将安全风险作为一个要素引入网络访问控制策略之中,对策略执行过程中主体、客体和操作等基本信息进行风险分析与度量,从而获得有利于网络访问控制策略动态优化的量化度量结果,改善涉密内网安全状况。
VPN gateway is typical boundary defense equipment in many secret-involved intranets,and the execution of its network access control strategy reflects the security of secret-involved intranets. The typical intranet based on VPN gateway is selected,and the metrics of network access control policy studied. With risk as an important factor of policy,and through quantitative measurement of the basic information such as subject,object and operation the quantitative results beneficial to dynamic optimization of network access control policy are acquired,and the security situation of secret-involved intranet is thus improved.
出处
《信息安全与通信保密》
2011年第4期61-63,共3页
Information Security and Communications Privacy