• DocumentCode
    1753616
  • Title

    An adaptive cross-layer design approach for network security management

  • Author

    Chuang, I-Hsun ; Hsieh, Chou-Ting ; Kuo, Yau-Hwang

  • Author_Institution
    Dept. of Comput. Sci. & Inf. Eng. Nat., Cheng Kung Univ., Tainan, Taiwan
  • fYear
    2011
  • fDate
    13-16 Feb. 2011
  • Firstpage
    1085
  • Lastpage
    1089
  • Abstract
    In traditional Open Systems Interconnection (OSI) layered model, many security protocols in layers are proposed to provide network security. Because security protocols among layers are lack of cooperation, system performance degrades due to security redundancy and furthermore causes system overloading. Therefore, the paper proposes a cross-layer design network security management (CLDNSM) to protect system security while improve system performance, such as CPU utilization. First, the multiple security-dimension quantification (MSDQ) metric is proposed to evaluate holistic system security. Then, the proposed CLDNSM aggregates system information from layers and uses it to obtain the optimal security settings of layers according to the MSDQ metric. The simulation results show that system performance will be improved without sacrificing security protect compared to OSI layered model by using CLDNSM. Finally, to adapt to dynamic environments, security constraints will be modified automatically in a limited range to avoid system overloads, the simulation results show that the system overloads are under control.
  • Keywords
    computer network management; computer network security; open systems; protocols; CLDNSM; CPU utilization; MSDQ metric; OSI layered model; cross-layer design network security management; multiple security-dimension quantification; network security management; open system interconnection layered model; security protocols; Authentication; Measurement; Open systems; Protocols; Simulation; System performance; Cross-Layer Design; cracking year; security dimension; security quantification; security requirement;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Advanced Communication Technology (ICACT), 2011 13th International Conference on
  • Conference_Location
    Seoul
  • ISSN
    1738-9445
  • Print_ISBN
    978-1-4244-8830-8
  • Type

    conf

  • Filename
    5745997