DocumentCode :
1827423
Title :
Towards a policy system for IPsec: issues and an experimental implementation
Author :
Baltatu, Madalina ; Lioy, Antonio ; Lombardo, Dario ; Mazzocchi, Daniele
Author_Institution :
Dip. di Automatica e Informatica, Politecnico di Torino, Italy
fYear :
2001
fDate :
10-12 Oct. 2001
Firstpage :
146
Lastpage :
151
Abstract :
IPsec, the standard suite of protocols to provide security in IP networks, and IKE, the commonly used key, management protocol for IPsec, do not address the more general problem of how security policies should be distributed to IPsec nodes. Previous IETF work in the area of network security, provides a definition of the basic requirements of an IP security policy system (IPSP) and a proposal of a security policy protocol (SPP) to exchange security policies. IPSP recommends that traditional mechanisms for distributing network management information (SNMP, COPS) should also be taken into consideration. The first objective of this paper is to evaluate the suitability, of existing network management mechanisms to achieve the goals of IPSP. Subsequently, the paper describes and discusses an approach followed in the implementation of an IPSP system, with emphasis on the implementation of SPP.
Keywords :
Internet; computer network management; security of data; telecommunication security; transport protocols; COPS; IETF; IKE; IP network security; IP security policy system; IPSP; IPsec nodes; SNMP; SPP; authorization mechanism; key management protocol; network management; network management information distribution; security policy protocol; Authentication; Communication system traffic control; IP networks; Information management; Information security; Internet; Proposals; Protection; Protocols; Synthetic aperture sonar;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Networks, 2001. Proceedings. Ninth IEEE International Conference on
ISSN :
1531-2216
Print_ISBN :
0-7695-1187-4
Type :
conf
DOI :
10.1109/ICON.2001.962332
Filename :
962332
Link To Document :
بازگشت