首页> 外文会议>Proceedings of the ACM SIGCOMM conference on Communications architectures amp; protocols >Inter-organization networks: implications of access control: requirements for interconnection protocol
【24h】

Inter-organization networks: implications of access control: requirements for interconnection protocol

机译:组织间网络:访问控制的含义:互连协议的要求

获取原文
获取原文并翻译 | 示例

摘要

When two or more distinct organizations interconnect their internal computer networks they form an Inter-Organization Network(ION). IONs support the exchange of cad/cam data between manufacturers and subcontractors, software distribution from vendors to users, customer input to suppliers' order-entry systems, and the shared use of expensive computational resources by research laboratories, as examples. This paper analyzes the technical implications of interconnecting networks across organization boundaries.

rn

After analyzing the organization context in which IONs are used, we demonstrate that such interconnections are not satisfied by traditional network design criteria of connectivity and transparency. To the contrary, a primary high-level requirement is access control, and participating organizations must be able to limit connectivity and make network boundaries visible. We describe a scheme based on non-discretionary control which allows interconnecting organizations tocombine gateway, network, and system-level mechanisms to enforce cross-boundary control over invocation and information flow, while minimizing interference with internal operations.

rn

Access control requirements such as these impose new requirements on the underlying interconnection protocols. We demonstrate such alternative interconnection protocols that support loose coupling across administrative boundaries and that accommodate the necessary control mechanisms. Message-based gateways that support non-real-time invocation of services (e.g., file and print servers, financial transactions, VLSI design tools, etc.) are a promising basis for such loose couplings.

机译:

当两个或多个不同的组织互连其内部计算机网络时,它们形成一个组织间网络(ION)。 ION支持在制造商和分包商之间交换cad / cam数据,从供应商到用户的软件分发,客户对供应商的订单输入系统的输入以及研究实验室对昂贵的计算资源的共享使用。本文分析了跨组织边界互连网络的技术含义。 rn

在分析了使用ION的组织环境之后,我们证明了传统的连通性和透明性网络设计标准不能满足这种互连要求。相反,主要的高级要求是访问控制,并且参与组织必须能够限制连接性并使网络边界可见。我们描述了一种基于非自由控制的方案,该方案允许互连组织结合网关,网络和系统级机制来对调用和信息流实施跨边界控制,同时将对内部操作的干扰降到最低。 rn

诸如此类的访问控制要求对基础互连协议提出了新要求。我们演示了这样的替代互连协议,它们支持跨管理边界的松散耦合并容纳必要的控制机制。支持非实时调用服务(例如文件和打印服务器,财务交易,VLSI设计工具等)的基于消息的网关是实现这种松散耦合的有前途的基础。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号