作者投稿和查稿 主编审稿 专家审稿 编委审稿 远程编辑

计算机工程 ›› 2009, Vol. 35 ›› Issue (8): 201-204. doi: 10.3969/j.issn.1000-3428.2009.08.068

• 安全技术 • 上一篇    下一篇

基于策略的一体化网络安全管理系统

韩锐生,赵 彬,徐开勇   

  1. (解放军信息工程大学电子技术学院信息安全研究所,郑州 450004)
  • 收稿日期:1900-01-01 修回日期:1900-01-01 出版日期:2009-04-20 发布日期:2009-04-20

Policy-based Integrative Network Security Management System

HAN Rui-sheng, ZHAO Bin, XU Kai-yong   

  1. (Information Security Institute, Electronic Technology Academe, PLA Information Engineering University, Zhengzhou 450004)
  • Received:1900-01-01 Revised:1900-01-01 Online:2009-04-20 Published:2009-04-20

摘要: 针对当前网络安全管理的缺陷,在网络安全管理中引入基于策略的管理方法,设计一个网络安全管理系统,实现对网络安全的一体化自动管理,简化网络安全管理的复杂性。介绍安全管理系统设计和策略驱动设备间互操作等技术的实现过程,并给出应用实例。

关键词: 策略驱动, 统一策略管理, 事件关联分析, Ponder策略框架

Abstract: Limitation of network security management is analyzed. This paper introduces Policy-Based Management(PBM) approach to network security management, designs a network security management system. The presented system can manage the network security management systems integrately and automately, dramatically reduce the complicity of network security management. is greatly useful to the security management of large-scale network. This paper introduces the design of the system, shows the completing work of key technologys such as the process of cooperation of security productions driven by event-triggered policy and gives an example of the system application.

Key words: policy-driven, uniform policy management, event coordination analysis, Ponder policy framework

中图分类号: