70 likes | 170 Vues
Explore dynamic security policies, secure active node architecture, reference monitoring, and network administration in active networks. Ensure security foundations with guaranteed node integrity and varied security schemes for unknown applications.
E N D
Panel: Dynamic Security in Active Networks Roy Campbell University of Illinois at Urbana-Champaign
Panel: U of I Proposal • Dynamic Security Policies • Secure Active Node Architecture • Reference Monitor • Active Capabilities • Network Administration
Architecture: Dynamic Security Policies • Security is a Foundation!!! No afterthought. • Node security/integrity guarantees • A universal policy is inadequate for Active Networks • Allow varied security schemes for anticipated unknown applications
Reference Monitor • All accesses to node resources go through reference monitor • Core security services verify the signature on the active capability • Reference monitor evaluates the active capability to check access
Active Capabilities • Global capabilities • Specify access user has to node resources, independent of execution environment • Issued by the administrator • Local capabilities • Specific capabilities issued by the Administrative E.E. in response to global ones
Network Administration • Administrative Execution Environment capsules have highest priority • Preempt all other capsules • Policy change • Capability revocations • Certificate revocations • Universal naming of node resources (e.g. like SNMP)
Secure Active Node Architecture Resource Reference & Local Capability Local Capability Revocation Policy Change Flow Flow Flow Flow Flow Flow EE EE Admin. EE Node OS Core Reference Monitor Node Resources