DocumentCode
2270664
Title
Fast authorization of XACML access control system on NETCONF platform
Author
Yexiang Liu ; Bin Zhang ; Guohui Li ; Jun Guo
Author_Institution
Web Search lab of Information and Telecommunications Engineering School, Beijing University of Posts and Telecommunications, China
fYear
2010
fDate
23-25 Oct. 2010
Firstpage
354
Lastpage
357
Abstract
The Network Configuration Protocol (NETCONF) describes a set of operations that read or write configuration data on a network device. These operations are transferred to the device by the means of remote procedure calls (RPCs) encoded in XML. However, currently the NETCONF remote network configuration protocol lacks an access control model, for NETCONF protocol does not specify an authorization scheme. Based on the NETCONF platform multiple access control mechanisms, such as RBAC, MAC, and XACML were researched, and We developed translation components to enable XACML know sub tree request, which is one kind of request define by NETCONF; Furthermore we improved PDP´s performance by comparing full Xpath expression without wildcard characters and relative path symbol. That can extremely better XACML access control mechanism from performance to humanity.
Keywords
AUTHORIZAION; MECHANISM; NETCONF; XACML; XML; XPATH;
fLanguage
English
Publisher
iet
Conference_Titel
Advanced Intelligence and Awarenss Internet (AIAI 2010), 2010 International Conference on
Conference_Location
Beijing, China
Type
conf
DOI
10.1049/cp.2010.0786
Filename
5696926
Link To Document