DocumentCode :
3231229
Title :
Interdomain access control with policy routing
Author :
Yeh, Jyh-haw ; Chow, Randy ; Newman-Wolfe, Richard
Author_Institution :
Dept. of Comput., Florida Univ., Gainesville, FL, USA
fYear :
1997
fDate :
29-31 Oct 1997
Firstpage :
46
Lastpage :
52
Abstract :
An internetwork consists of heterogeneous domains managed under different administrative authorities. For secure interdomain resource sharing, it is necessary to implement an interdomain access control (IAC) protocol to regulate traffic flow between end-to-end domains and among transit domains. Control of traffic flow in transit domains is closely related to network packet routing protocols. Therefore, when designing an IAC protocol, it is logical to integrate the protocol with the underlying network routing facilities. This paper proposes two IAC protocols: KIAC (Key-based IAC) and TIAC (Ticket-based IAC). Both protocols are built on top of the IDPR (Inter-Domain Policy Routing) suggested by RFC 1479 (M. Steenstrup, 1993). The implementation of KIAC requires each domain to maintain a session key database for forwarding data packets. The TIAC protocol is an enhancement of KIAC to reduce storage requirements. The overhead complexities of the two protocols are analyzed
Keywords :
access protocols; authorisation; internetworking; packet switching; telecommunication control; telecommunication network routing; Inter-Domain Policy Routing; KIAC; TIAC; administrative authorities; data packet forwarding; end-to-end domains; heterogeneous domains; interdomain access control; internetwork; key-based protocol; network packet routing protocols; overhead complexities; secure interdomain resource sharing; session key database; storage requirements; ticket-based protocol; traffic flow regulation; transit domains; Access control; Access protocols; Authorization; Communication system traffic control; Databases; Engineering management; Information science; Internet; Resource management; Routing protocols;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Distributed Computing Systems, 1997., Proceedings of the Sixth IEEE Computer Society Workshop on Future Trends of
Conference_Location :
Tunis
ISSN :
1071-0485
Print_ISBN :
0-8186-8153-5
Type :
conf
DOI :
10.1109/FTDCS.1997.644702
Filename :
644702
Link To Document :
بازگشت