Automatic Generation of Conflict-Free IPsec Policies

碩士 === 國立臺灣大學 === 電機工程學研究所 === 93 === IPsec will function correctly only if its security policies satisfy all the requirements. If the security policies cannot satisfy our requirements, we said there might be policy conflicts. In this paper, we analyze all situations which could possibly lead to a p...

Full description

Bibliographic Details
Main Authors: Chi-Lan Chang, 張棋嵐
Other Authors: Chin-Laung Lei
Format: Others
Language:en_US
Published: 2005
Online Access:http://ndltd.ncl.edu.tw/handle/26598847616158800125
Description
Summary:碩士 === 國立臺灣大學 === 電機工程學研究所 === 93 === IPsec will function correctly only if its security policies satisfy all the requirements. If the security policies cannot satisfy our requirements, we said there might be policy conflicts. In this paper, we analyze all situations which could possibly lead to a policy conflict and try to resolve all of them. We induced only two situations which could cause conflicts and also proposed a method to automatically generate conflict-free policies which satisfy all requirements. We also implement our algorithm and compare the result of simulation with the other approaches and show that it outperforms existing approaches in the literature.