The Access Control System of Network Management Information Base


The Transactions of the Korea Information Processing Society (1994 ~ 2000), Vol. 5, No. 5, pp. 1246-1256, May. 1998
10.3745/KIPSTE.1998.5.5.1246,   PDF Download:

Abstract

MIB(Management Information Base), one of the key components of network management system, is a conceptual repository for the information of the various managed objects. MIB stores and manages all the structural and operational data of each managed resources. Therefore, MIB should be protected properly from inadvertant user access or malicious attacks. International standard ISO/IEC 10164-9 describes several managed object classes for the enforcement of MIB security. Those managed object classes described access control rules for security policy. But the exact authorization procedures using those newly added managed object classes are not presented. In this paper, we divide managed object classes into two groups, explicit and implicit ones, and describe the access authorization procedure in Z specification language. Using Z as a description method for both authorization procedure and GDMO's action part, the behaviour of each managed object class and access authorization procedure is more precisely and formally defined than those of natural language form.


Statistics
Show / Hide Statistics

Statistics (Cumulative Counts from September 1st, 2017)
Multiple requests among the same browser session are counted as one view.
If you mouse over a chart, the values of data points will be shown.


Cite this article
[IEEE Style]
K. J. Duk, L. H. Hyo, N. B. Nam, "The Access Control System of Network Management Information Base," The Transactions of the Korea Information Processing Society (1994 ~ 2000), vol. 5, no. 5, pp. 1246-1256, 1998. DOI: 10.3745/KIPSTE.1998.5.5.1246.

[ACM Style]
Kim Jong Duk, Lee Hyung Hyo, and Noh Bong Nam. 1998. The Access Control System of Network Management Information Base. The Transactions of the Korea Information Processing Society (1994 ~ 2000), 5, 5, (1998), 1246-1256. DOI: 10.3745/KIPSTE.1998.5.5.1246.