Title :
Design and implementation of a security management system
Author :
Song, Wang-Cheol ; Baek, Lee-Hyun ; Kang, Chang-Eon
Author_Institution :
Dept. of Electron. Eng., Yonsei Univ., Seoul, South Korea
Abstract :
In this paper we have designed and implemented a security management system, which is based on the CMISE services. This system provides two security-related system management functions (SMFs) to security management users such as notification of a security event alarm and an audit trail of a security related event. These SMFs are implemented using the osimis-40, OSI network management platform. The target of this security management system is secure X.500 directory services based on the authentication framework specified in the Recommendation X.509. The security system is implemented using OSISEC and its services are data confidentiality, data integrity and non-repudiation of origin. Based on the OSI network management framework we implemented a manager system which administers the keys and provides CMISE services, and also some remote agent systems which provide services for the events concerning the security system, while also interacting with MIB. Access control SMF is being implemented
Keywords :
authorisation; computer network management; data integrity; open systems; security of data; CMISE services; MIB; OSI network management framework; OSISEC; Recommendation X.509; access control; audit trail; authentication framework; data confidentiality; data integrity; manager system; notification; origin nonrepudiation; osimis-40 OSI network management platform; remote agent system; secure X.500 directory services; security event alarm; security management system; security management users; security related event; system management functions; Access control; Computer architecture; Computer network management; Computer security; Data security; Design engineering; Engineering management; Information management; Information security; Open systems;
Conference_Titel :
Networks, 1995. Theme: Electrotechnology 2000: Communications and Networks. [in conjunction with the] International Conference on Information Engineering., Proceedings of IEEE Singapore International
Print_ISBN :
0-7803-2579-6
DOI :
10.1109/SICON.1995.526058