Policy-based Network Security with Multiple Agents (ICCAS 2003)

  • Seo, Hee-Suk (School of Information & Communication Engineering, Sungkyunkwan University) ;
  • Lee, Won-Young (School of Information & Communication Engineering, Sungkyunkwan University) ;
  • Yi, Mi-Ra (School of Information & Communication Engineering, Sungkyunkwan University)
  • Published : 2003.10.22

Abstract

Policies are collections of general principles specifying the desired behavior and state of a system. Network management is mainly carried out by following policies about the behavior of the resources in the network. Policy-based (PB) network management supports to manage distributed system in a flexible and dynamic way. This paper focuses on configuration management based on Internet Engineering Task Force (IETF) standards. Network security approaches include the usage of intrusion detection system to detect the intrusion, building firewall to protect the internal systems and network. This paper presents how the policy-based framework is collaborated among the network security systems (intrusion detection system, firewall) and intrusion detection systems are cooperated to detect the intrusions.

Keywords