{"title":"智能标识网络中的一种访问控制机制","authors":"Peidai Liu, Shuai Gao, Xindi Hou, Ningchun Liu","doi":"10.1109/ICCCS57501.2023.10150666","DOIUrl":null,"url":null,"abstract":"In recent years, with the development of mobile Internet, cloud computing, and other technologies, the traditional Internet architecture has been challenging to meet the needs of future network development. As a revolutionary network architecture, SINET provides security and mobility for the network through the identification mapping separation technology. At the same time, the development of programmable data plane technology provides conditions for the large-scale deployment of SINET. In this paper, we proposed an Attribute-based access control(ABAC) mechanism based on multidimensional attributes of users and services in the PDP-based SINET. We designed the workflow of property registration and access requests of the network. We built a network prototype system and verified the function of the access control mechanism. The results show that the access control mechanism proposed in this paper can meet the network's fine-grained security management and control requirements and ensure the secure access of users and services in the network.","PeriodicalId":266168,"journal":{"name":"2023 8th International Conference on Computer and Communication Systems (ICCCS)","volume":"76 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2023-04-21","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"An Access Control Mechanism in Smart Identifier Network\",\"authors\":\"Peidai Liu, Shuai Gao, Xindi Hou, Ningchun Liu\",\"doi\":\"10.1109/ICCCS57501.2023.10150666\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"In recent years, with the development of mobile Internet, cloud computing, and other technologies, the traditional Internet architecture has been challenging to meet the needs of future network development. As a revolutionary network architecture, SINET provides security and mobility for the network through the identification mapping separation technology. At the same time, the development of programmable data plane technology provides conditions for the large-scale deployment of SINET. In this paper, we proposed an Attribute-based access control(ABAC) mechanism based on multidimensional attributes of users and services in the PDP-based SINET. We designed the workflow of property registration and access requests of the network. We built a network prototype system and verified the function of the access control mechanism. The results show that the access control mechanism proposed in this paper can meet the network's fine-grained security management and control requirements and ensure the secure access of users and services in the network.\",\"PeriodicalId\":266168,\"journal\":{\"name\":\"2023 8th International Conference on Computer and Communication Systems (ICCCS)\",\"volume\":\"76 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2023-04-21\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2023 8th International Conference on Computer and Communication Systems (ICCCS)\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICCCS57501.2023.10150666\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2023 8th International Conference on Computer and Communication Systems (ICCCS)","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICCCS57501.2023.10150666","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
An Access Control Mechanism in Smart Identifier Network
In recent years, with the development of mobile Internet, cloud computing, and other technologies, the traditional Internet architecture has been challenging to meet the needs of future network development. As a revolutionary network architecture, SINET provides security and mobility for the network through the identification mapping separation technology. At the same time, the development of programmable data plane technology provides conditions for the large-scale deployment of SINET. In this paper, we proposed an Attribute-based access control(ABAC) mechanism based on multidimensional attributes of users and services in the PDP-based SINET. We designed the workflow of property registration and access requests of the network. We built a network prototype system and verified the function of the access control mechanism. The results show that the access control mechanism proposed in this paper can meet the network's fine-grained security management and control requirements and ensure the secure access of users and services in the network.