DocumentCode
3351283
Title
The research on security architecture for active networks and security mechanism for active nodes
Author
Wu, Yinghua ; Xu, Ke ; Wu, Jianping ; Xu, Mingwei
Author_Institution
Dept. of Comput. Sci., Tsinghua Univ., Beijing, China
Volume
1
fYear
2003
fDate
23 Feb.-1 March 2003
Firstpage
58
Abstract
Active network is a new network architecture of the last few years, in which active nodes provide programmable network services on passing packets. Users can configure, extend and download these services through active packets. However, the flexibility of network brings serious security problems. Because there are always malicious attackers in network, we must limit users´ access to the resources and statuses of active routers to guarantee their safe running. Because traditional routers are mainly responsible for packets forwarding, and lack enough security support to router software, it´s necessary to design consummate active network security architecture. This paper defines the integrated security architecture of active network, and provides safe protection to each phase of active codes during their running. And we also define the security architecture of active nodes, and bring forward the resource managing mechanism based on access control. The security architecture and mechanism introduced by this paper have been implemented in Extensible Service Router prototype system.
Keywords
message authentication; packet switching; resource allocation; telecommunication network routing; telecommunication security; Extensible Service Router; access control; active networks; active nodes; integrated architecture; malicious attackers; passing packets; programmable network services; resource managing mechanism; safe protection; security architecture; security mechanism; Access control; Authentication; Computer architecture; Computer science; Computer security; Data security; Network servers; Protection; Prototypes; Resource management;
fLanguage
English
Publisher
ieee
Conference_Titel
Telecommunications, 2003. ICT 2003. 10th International Conference on
Print_ISBN
0-7803-7661-7
Type
conf
DOI
10.1109/ICTEL.2003.1191171
Filename
1191171
Link To Document