DocumentCode :
2270664
Title :
Fast authorization of XACML access control system on NETCONF platform
Author :
Yexiang Liu ; Bin Zhang ; Guohui Li ; Jun Guo
Author_Institution :
Web Search lab of Information and Telecommunications Engineering School, Beijing University of Posts and Telecommunications, China
fYear :
2010
fDate :
23-25 Oct. 2010
Firstpage :
354
Lastpage :
357
Abstract :
The Network Configuration Protocol (NETCONF) describes a set of operations that read or write configuration data on a network device. These operations are transferred to the device by the means of remote procedure calls (RPCs) encoded in XML. However, currently the NETCONF remote network configuration protocol lacks an access control model, for NETCONF protocol does not specify an authorization scheme. Based on the NETCONF platform multiple access control mechanisms, such as RBAC, MAC, and XACML were researched, and We developed translation components to enable XACML know sub tree request, which is one kind of request define by NETCONF; Furthermore we improved PDP´s performance by comparing full Xpath expression without wildcard characters and relative path symbol. That can extremely better XACML access control mechanism from performance to humanity.
Keywords :
AUTHORIZAION; MECHANISM; NETCONF; XACML; XML; XPATH;
fLanguage :
English
Publisher :
iet
Conference_Titel :
Advanced Intelligence and Awarenss Internet (AIAI 2010), 2010 International Conference on
Conference_Location :
Beijing, China
Type :
conf
DOI :
10.1049/cp.2010.0786
Filename :
5696926
Link To Document :
بازگشت