Please use this identifier to cite or link to this item:
https://hdl.handle.net/11147/10069
Full metadata record
DC Field | Value | Language |
---|---|---|
dc.contributor.author | Tuğlular, Tuğkan | - |
dc.date.accessioned | 2021-01-24T18:32:10Z | - |
dc.date.available | 2021-01-24T18:32:10Z | - |
dc.date.issued | 2008 | - |
dc.identifier.isbn | 978-960-6766-64-0 | - |
dc.identifier.uri | https://hdl.handle.net/11147/10069 | - |
dc.description | 7th WSEAS International Conference on TELECOMMUNICATIONS and INFORMATICS | en_US |
dc.description.abstract | Multiple interconnected network segments distributed across various locations, such as corporate networks, where users or employees constantly travel among segments and require to access servers, need to have network access control mechanisms that are able to adapt to these location changes. The idea of a firewall changing or adapting its rules depending on the location of users is presented by an architecture in this paper. This architecture proposes deployment of a policy server at the management level and policy agents at the firewall level, so that policy-driven network security management is enabled by specifying location aware user based network access control policies at the network security management and enforcing them at the managed firewalls. The architecture presented in this paper utilizes user VPN connection event triggers for dynamic policy configuration and automated policy deployment to firewalls. Location aware user based network access control policies, which are management level policies, are implemented using XACML. A network level policy is usually a configuration, or policy, file local to the firewall. The policy agent incorporated into the firewall performs the mapping from management level policy to firewall policy. | en_US |
dc.description.sponsorship | WSEAS | en_US |
dc.language.iso | en | en_US |
dc.publisher | World Scientific and Engineering Academy and Society | en_US |
dc.relation.ispartof | New Aspects of Telecommunications and Informatics | en_US |
dc.relation.ispartofseries | Electrical and Computer Engineering | - |
dc.rights | info:eu-repo/semantics/openAccess | en_US |
dc.subject | Access control | en_US |
dc.subject | Network security | en_US |
dc.subject | Firewalls | en_US |
dc.subject | Location awareness | en_US |
dc.subject | XACML | en_US |
dc.title | Automatic enforcement of location aware user based network access control policies | en_US |
dc.type | Conference Object | en_US |
dc.institutionauthor | Tuğlular, Tuğkan | - |
dc.department | İzmir Institute of Technology. Computer Engineering | en_US |
dc.identifier.startpage | 49 | en_US |
dc.identifier.endpage | 54 | en_US |
dc.identifier.wos | WOS:000257883600007 | en_US |
dc.relation.publicationcategory | Makale - Uluslararası Hakemli Dergi - Kurum Öğretim Elemanı | en_US |
dc.identifier.wosquality | N/A | - |
dc.identifier.scopusquality | N/A | - |
item.fulltext | With Fulltext | - |
item.grantfulltext | open | - |
item.languageiso639-1 | en | - |
item.openairecristype | http://purl.org/coar/resource_type/c_18cf | - |
item.cerifentitytype | Publications | - |
item.openairetype | Conference Object | - |
crisitem.author.dept | 03.04. Department of Computer Engineering | - |
Appears in Collections: | Computer Engineering / Bilgisayar Mühendisliği WoS İndeksli Yayınlar Koleksiyonu / WoS Indexed Publications Collection |
Files in This Item:
File | Size | Format | |
---|---|---|---|
Automatic_enforcement.pdf | 429.59 kB | Adobe PDF | View/Open |
CORE Recommender
WEB OF SCIENCETM
Citations
1
checked on Nov 9, 2024
Page view(s)
226
checked on Nov 18, 2024
Download(s)
146
checked on Nov 18, 2024
Google ScholarTM
Check
Altmetric
Items in GCRIS Repository are protected by copyright, with all rights reserved, unless otherwise indicated.