Title :
Architecture & system design of Authentication, Authorization, & Accounting services
Author :
Papatheodoulou, N. ; Sklavos, N.
Author_Institution :
Inf. & MM Dept., Technol. Educ. Inst. of Patras, Patras, Greece
Abstract :
One of the most important issues in traditional and modern networks architecture is security. Data integrity and authenticity are the most critical points that a network security model should protect and ensure. Authentication, Authorization and Accounting model (AAA Protocol) is one of the most portable security concepts. Authentication acts providing proof of authenticity for stored data and verifying proof of authenticity for received. Authorization acts providing privileges to those clients that present specific credentials. Accounting acts collecting accounting metrics for two reasons; to forward them to the billing server for billing results, and to keep them saved locally for the procedure of trend analysis. In this paper, the generic AAA architecture is introduced, personalized and practically designed for usage in modern networks. The most efficient way, using supported protocols and cryptographic algorithms, for administrating AAA in practice, is proposed for mobile networks or administrative domains. In this work, a Web based application scenario using the AAA protocol is proposed, with the server-side developed in PHP, SQL and Java, implementation platform.
Keywords :
Internet; Java; SQL; authoring languages; authorisation; client-server systems; cryptographic protocols; message authentication; mobile radio; telecommunication computing; telecommunication security; AAA protocol; Java; PHP; SQL; Web-based application scenario; accounting metrics; administrative domain; architecture-system design; authentication-authorization-accounting service; billing server; client-server system; cryptographic algorithm; data integrity; generic AAA architecture; mobile network security model; Access protocols; Authentication; Authorization; Cryptographic protocols; Cryptography; Data security; Information security; Java; Network servers; Protection; AAA; Networks; Security;
Conference_Titel :
EUROCON 2009, EUROCON '09. IEEE
Conference_Location :
St.-Petersburg
Print_ISBN :
978-1-4244-3860-0
Electronic_ISBN :
978-1-4244-3861-7
DOI :
10.1109/EURCON.2009.5167894