Title
Virtual Private Services: Coordinated Policy Enforcement for Distributed Applications
Abstract
Large scale distributed applications combine network ac- cess with multiple storage and computational elements. The distributed responsibility for resource control creates new security issues, caused by the complexity of the oper- ating environment. In particular, policies at multiple lay- ers and locations force conventional mechanisms such as firewalls and compartmented file storage into roles where they are clumsy and failure-prone. Our approach relies on two functional divisions. First, we split policy specifi- cation and policy enforcement, providing local autonomy within the constraints of the global security policy. Sec- ond, we create virtual security domains each with its own security policy. Every domain has an associated set of privileges and permissions restricting it to the resources it needs to use and the services it must perform. Vir- tual private services ensure security and privacy policies are adhered to through coordinated policy enforcement points.
Year
Venue
Keywords
2007
I. J. Network Security
security policy,trust management,distributed access control,computer science,distributed application
Field
DocType
Volume
Network security policy,Computer security,Distributed System Security Architecture,Computer science,Covert channel,Cloud computing security,Security policy,Security information and event management,Network Access Control,Computer security model,Distributed computing
Journal
4
Issue
Citations 
PageRank 
1
6
0.50
References 
Authors
29
6
Name
Order
Citations
PageRank
Sotiris Ioannidis11383130.64
Steven M. Bellovin22312276.72
John Ioannidis31431145.33
Angelos D. Keromytis44678385.02
Kostas G. Anagnostakis574359.98
Jonathan M. Smith61689238.40