DocumentCode :
3005388
Title :
An Efficient Management Method of Access Policies for Hierarchical Virtual Private Networks
Author :
Okayama, Kiyohiko ; Yamai, Nariyoshi ; Ishibashi, Haruka ; Abe, Kiyohiko ; Matsuura, T.
Author_Institution :
Inf. Technol. Center, Okayama Univ., Okayama, Japan
fYear :
2007
fDate :
7-12 Jan. 2007
Firstpage :
1
Lastpage :
7
Abstract :
VPN (virtual private network) is one of the most important technologies on the Internet. With VPN, we can securely access to resources in the organizational network via the Internet. In VPNs having hierarchical structure, since each VPN domain has different access policy (whether VPN gateway should perform authentication, data encryption, and so on or not), an administrator of a VPN domain may need to configure access policies which are different from every VPN sub-domain. However, in the existing VPN methods, since access policies are stored in a static configuration file of each VPN gateway, an administrator of a VPN domain has to cooperate with the other administrators of its sub-domains. Therefore, management cost of access policies becomes considerably large if the organization has large and complicated structure. In this paper, we propose an efficient management method of access policies for hierarchical VPNs. In order to reduce management cost, we introduce a database with hierarchical structure to represent access policies easily and policy servers to get access policies automatically. The effectiveness of our proposed method is confirmed by an experiment on an actual network using policy servers based on the proposed method.
Keywords :
Internet; authorisation; database management systems; internetworking; virtual private networks; Internet; VPN gateway; access policy; hierarchical database; management method; static configuration file; virtual private network; Authentication; Costs; Cryptography; Databases; Hospitals; IP networks; Network servers; Relays; Virtual private networks; Web server;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Communication Systems Software and Middleware, 2007. COMSWARE 2007. 2nd International Conference on
Conference_Location :
Bangalore
Print_ISBN :
1-4244-0613-7
Type :
conf
DOI :
10.1109/COMSWA.2007.382593
Filename :
4268017
Link To Document :
بازگشت