• DocumentCode
    3044960
  • Title

    Network Information Flow Control: Proof of Concept

  • Author

    Alghothami, Alwaleed ; Kammuller, Florian

  • fYear
    2013
  • fDate
    13-16 Oct. 2013
  • Firstpage
    2957
  • Lastpage
    2962
  • Abstract
    In this paper we present a concept for controlling the way information flows in a network by labeling packets and controlling the way they flow inside the network. We introduce the security model which is a simple Distributed Information Flow Control (DIFC) model enabling the definition of security classes for the labels and the security policy. We provide a proof of concept of the proposed Network Information Flow Control using an implementation based on labeling mechanisms that are readily available for Quality of Service (QoS) of VLAN network management devices.
  • Keywords
    computer network management; computer network security; local area networks; quality of service; telecommunication network routing; DIFC model; QoS; VLAN network management devices; distributed information flow control model; network information flow control; packet labeling; quality of service; security model; Diffserv networks; Labeling; Lattices; Logic gates; Security; Servers; Switches;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Systems, Man, and Cybernetics (SMC), 2013 IEEE International Conference on
  • Conference_Location
    Manchester
  • Type

    conf

  • DOI
    10.1109/SMC.2013.504
  • Filename
    6722257