Abstract
Virtual Local Area Network (VLAN) is a logical grouping of end stations such that end stations in the VLAN appear to be on the same physical LAN segment even though they may be geographically separated. Contrary to its primary expectations, server centralization, enterprise-wide collaborative applications trends raise various network resources need to be made available to users regardless of their VLAN membership. Unfortunately these trends also increase network security threats. It is general that the primary threat to network security is not caused by external users but the come from individuals inside and organization. Although network access is opened for every user in VLAN, it must be restricted to some degree. In this paper, we propose a new asymmetric VLAN management scheme in which users belonging to multiple VLANs to access another VLAN end station while both end stations are VLAN-unaware. In our scheme, an end station can communicate another end station belonging to different VLAN only after authentication. We also propose a novel VLAN access control scheme that allows only authorized users to access the multi-netted asymmetric VLAN.
| Original language | English |
|---|---|
| Pages (from-to) | 137-145 |
| Number of pages | 9 |
| Journal | Lecture Notes in Computer Science |
| Volume | 3480 |
| Issue number | I |
| DOIs | |
| State | Published - 2005 |
| Event | International Conference on Computational Science and Its Applications - ICCSA 2005 - , Singapore Duration: 9 May 2005 → 12 May 2005 |
Fingerprint
Dive into the research topics of 'Dynamic access control scheme for service-based multi-netted asymmetric virtual LAN'. Together they form a unique fingerprint.Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver