Title :
An adaptive cross-layer design approach for network security management
Author :
Chuang, I-Hsun ; Hsieh, Chou-Ting ; Kuo, Yau-Hwang
Author_Institution :
Dept. of Comput. Sci. & Inf. Eng. Nat., Cheng Kung Univ., Tainan, Taiwan
Abstract :
In traditional Open Systems Interconnection (OSI) layered model, many security protocols in layers are proposed to provide network security. Because security protocols among layers are lack of cooperation, system performance degrades due to security redundancy and furthermore causes system overloading. Therefore, the paper proposes a cross-layer design network security management (CLDNSM) to protect system security while improve system performance, such as CPU utilization. First, the multiple security-dimension quantification (MSDQ) metric is proposed to evaluate holistic system security. Then, the proposed CLDNSM aggregates system information from layers and uses it to obtain the optimal security settings of layers according to the MSDQ metric. The simulation results show that system performance will be improved without sacrificing security protect compared to OSI layered model by using CLDNSM. Finally, to adapt to dynamic environments, security constraints will be modified automatically in a limited range to avoid system overloads, the simulation results show that the system overloads are under control.
Keywords :
computer network management; computer network security; open systems; protocols; CLDNSM; CPU utilization; MSDQ metric; OSI layered model; cross-layer design network security management; multiple security-dimension quantification; network security management; open system interconnection layered model; security protocols; Authentication; Measurement; Open systems; Protocols; Simulation; System performance; Cross-Layer Design; cracking year; security dimension; security quantification; security requirement;
Conference_Titel :
Advanced Communication Technology (ICACT), 2011 13th International Conference on
Conference_Location :
Seoul
Print_ISBN :
978-1-4244-8830-8