位置:成果数据库 > 期刊 > 期刊详情页
Security-State Adjustable Gateway with Threat-Based Configuration
  • ISSN号:1674-862X
  • 期刊名称:《电子科技学刊:英文版》
  • 时间:0
  • 分类:TP393.08[自动化与计算机技术—计算机应用技术;自动化与计算机技术—计算机科学与技术] TP314[自动化与计算机技术—计算机软件与理论;自动化与计算机技术—计算机科学与技术]
  • 作者机构:[1]Department of Computer Science and Information Engineering, National University of Kaohsiung, Department of Computer Science and Information Engineering, National Taichung University of Science and Technology, Department of System Research, Trend Micro
  • 相关基金:supported by National Science Council under Grant No. NSC 101-2218-E-025-001, NSC 100-2221-E-390-012, and NSC 101-2221-E-390-007
中文摘要:

This paper proposes a configurable secure gateway architecture which allows the system administrators to dynamically configure the security mechanisms upon deployment or during the run-time. Rather than allowing the system administrators to turn on or off individual security mechanisms, the proposed architecture allows the administrators to configure the gateway based on the security threats to be overcome. The current common architecture leads to tremendous administration overhead and increases the chance of misconfiguration vulnerability. We propose a novel software architecture to aid the product designers to avoid the misconfiguration vulnerability and the end-users to ease the administration overhead. The software architecture makes use of the threats to the gateways and the occurrence relation between the threats to configure the security software components on the gateways. With the software architecture, the end-users can focus on determining the desired security features rather than the software configuration. Moreover, the architecture allows the product designers or security service to incrementally revise the software configuration when new threats appear.

英文摘要:

This paper proposes a configurable secure gateway architecture which allows the system administrators to dynamically configure the security mechanisms upon deployment or during the run-time. Rather than allowing the system administrators to turn on or off individual security mechanisms, the proposed architecture allows the administrators to configure the gateway based on the security threats to be overcome. The current common architecture leads to tremendous administration overhead and increases the chance of misconfiguration vulnerability. We propose a novel software architecture to aid the product designers to avoid the misconfiguration vulnerability and the end-users to ease the administration overhead. The software architecture makes use of the threats to the gateways and the occurrence relation between the threats to configure the security software components on the gateways. With the software architecture, the end-users can focus on determining the desired security features rather than the software configuration. Moreover, the architecture allows the product designers or security service to incrementally revise the software configuration when new threats appear.

同期刊论文项目
同项目期刊论文
期刊信息
  • 《电子科技学刊:英文版》
  • 主管单位:
  • 主办单位:电子科技大学
  • 主编:周小佳
  • 地址:成都市建设北路
  • 邮编:610054
  • 邮箱:journal@westc.edu.cn
  • 电话:028-83200028
  • 国际标准刊号:ISSN:1674-862X
  • 国内统一刊号:ISSN:51-1724/TN
  • 邮发代号:62-268
  • 获奖情况:
  • 第二届中国高校特色科技期刊奖
  • 国内外数据库收录:
  • 美国化学文摘(网络版),英国科学文摘数据库,英国高分子图书馆,瑞典开放获取期刊指南
  • 被引量:6