摘要
针对已有内网访问控制的不足,本文提出了一个分布式架构的基于ARP协议解析的内网访问控制系统,并对各部件功能特性、系统工作流程和检测原理进行了详细的描述和讨论。本系统突出的优点是采用分级式管理,实现了跨网段的准入控制和数据的分散采集与处理,可以有效地避免单点失效。
A distributed Inner-net access control system using the ARP protocol is proposed in this paper for me purpose of solving the problems of the existing techniques. Firstly, the system framework is introduced. Then, the characteristics of entities, system working principles and flow charts are described in detail. In the end, the advantages of this system are summarized, such as the admittance control across different network segments, the distributed data collecting and processing, and the prevention of single-point failures.
出处
《计算机工程与科学》
CSCD
北大核心
2010年第1期21-24,28,共5页
Computer Engineering & Science
基金
北京市优秀人才培养资助项目(20061D030060083)
关键词
内网
访问控制
协议解析
中心认证器
监视代理
Inner-net
access control
protocol analysis
certification authority server
agent