Service Dependencies-Aware Policy Enforcement Framework Based on Hierarchical Colored Petri Net - Archive ouverte HAL Accéder directement au contenu
Article Dans Une Revue International Symposium on Security in Computing and Communications Année : 2013

Service Dependencies-Aware Policy Enforcement Framework Based on Hierarchical Colored Petri Net

Résumé

As computer and network security threats become more sophisticated and the number of service dependencies is increasing, optimal response decision is becoming a challenging task for security administrators. They should deploy and implement proper network security policy enforcement mechanisms in order to apply the appropriate countermeasures and defense strategy. In this paper, we propose a novel modeling framework which considers the service dependencies while identifying and selecting the appropriate Policy Enforcement Points during an intrusion response process. First, we present the security implications of the service dependencies that have been developed in the literature. Second, we give an overview of Colored Petri Nets (CPN) and Hierarchical CPN (HCPN) and its application on network security. Third, we specify our Service Dependencies-aware Policy Enforcement Framework which is based on the application of HCPN. Finally and to illustrate the advantage of our approach, we present a webmail application use case with the integration of different Policy Enforcement Points.
Fichier principal
Vignette du fichier
3770313.pdf (209.44 Ko) Télécharger le fichier
Origine : Fichiers éditeurs autorisés sur une archive ouverte
Loading...

Dates et versions

hal-00858941 , version 1 (06-09-2013)

Identifiants

Citer

Yosra Ben Mustapha, Hervé Debar. Service Dependencies-Aware Policy Enforcement Framework Based on Hierarchical Colored Petri Net. International Symposium on Security in Computing and Communications, 2013, pp.313-321. ⟨10.1007/978-3-642-40576-1_31⟩. ⟨hal-00858941⟩
277 Consultations
321 Téléchargements

Altmetric

Partager

Gmail Facebook X LinkedIn More