Title
Towards a Network-Independent Policy Specification
Abstract
A very ambitious objective in the field of policy-based systems is the provision of an intuitive and transparent way for policy specification, refinement and enforcement. This is one of the key enabling technologies for a simplified security management of complex networked environments. Currently, security policies are enforced by configuring the end devices by means of low-level device-specific parameters manually derived from high level specifications. This process, defined as policy translation, is still performed without a holistic view of the overall security requirements. This paper presents the Network Contextualization Tool (NCTool), a software supporting administrators in performing network dependent activities when configuring security enabled devices. The tool provides a great advantage in the management of complex networks. In fact, it simplifies the network administration tasks and reduces effort and responsibilities for the administrators, thus decreasing the risk of mistaken configurations.
Year
DOI
Venue
2010
10.1109/PDP.2010.45
Parallel, Distributed and Network-Based Processing
Keywords
Field
DocType
security management,network-independent policy specification,complex networked environment,policy translation,security policy,configuring security,overall security requirement,policy specification,network administration task,network dependent activity,complex network,business,servers,optimization,security,computer network security
Network security policy,Computer science,Network security,Server,Software,Enforcement,Complex network,Security policy,Distributed computing,Security management
Conference
ISSN
ISBN
Citations 
1066-6192 E-ISBN : 978-1-4244-5673-4
978-1-4244-5673-4
3
PageRank 
References 
Authors
0.38
6
3
Name
Order
Citations
PageRank
Cataldo Basile111414.90
Antonio Lioy244453.41
Marco Vallini3324.22