-
1.
公开(公告)号:KR100438896B1
公开(公告)日:2004-07-02
申请号:KR1020020015381
申请日:2002-03-21
Applicant: 한국전자통신연구원 , 대한민국(부경대학교 총장)
IPC: H04L12/24
Abstract: PURPOSE: A policy-based network system for minimizing the loss of policy enforcement and a method for operating the same are provided to minimize the loss of policy enforcement by supplying policy data to a policy client using a caching technique, even though a policy server fails to access a policy cache. CONSTITUTION: A policy-based network system is comprised of a PDP(Policy Decision Point)(104), a policy warehouse(105), and a PEP(Policy Enforcement Point)(102). The PEP(102), a policy client, having two interfaces for a sending terminal(101) and a receiving terminal(103), transfers data from the sending terminal(101) to the receiving terminal(103). The PDP(104), a policy server, decides the policy of the PEP(102) through a continuous connection with the PEP(102). In response to a policy decision request from the PEP(102), the PDP(104) searches the policy warehouse(105) for suitable policy data using an LDAP(Lightweight Directory Access Protocol). The PDP(104) comprises a cache warehouse(114) storing high-priority policy data for policy decision.
Abstract translation: 目的:通过使用缓存技术向策略客户端提供策略数据,尽可能减少策略实施丢失的策略型网络系统及其操作方法,以最小化策略实施的损失,即使策略服务器失败 访问策略缓存。 组成:基于策略的网络系统由PDP(策略决策点)(104),策略仓库(105)和PEP(策略执行点)(102)组成。 具有用于发送终端(101)和接收终端(103)的两个接口的策略客户端PEP(102)将数据从发送终端(101)传送到接收终端(103)。 PDP(104)是策略服务器,通过与PEP(102)的连续连接来决定PEP(102)的策略。 响应于来自PEP(102)的策略决定请求,PDP(104)使用LDAP(轻量目录访问协议)在策略仓库(105)中搜索合适的策略数据。 PDP(104)包括存储用于策略决策的高优先级策略数据的高速缓存仓库(114)。
-
公开(公告)号:KR1020030075903A
公开(公告)日:2003-09-26
申请号:KR1020020015381
申请日:2002-03-21
Applicant: 한국전자통신연구원 , 대한민국(부경대학교 총장)
IPC: H04L12/24
CPC classification number: H04L41/0893 , H04L41/024
Abstract: PURPOSE: A policy-based network system for minimizing the loss of policy enforcement and a method for operating the same are provided to minimize the loss of policy enforcement by supplying policy data to a policy client using a caching technique, even though a policy server fails to access a policy cache. CONSTITUTION: A policy-based network system is comprised of a PDP(Policy Decision Point)(104), a policy warehouse(105), and a PEP(Policy Enforcement Point)(102). The PEP(102), a policy client, having two interfaces for a sending terminal(101) and a receiving terminal(103), transfers data from the sending terminal(101) to the receiving terminal(103). The PDP(104), a policy server, decides the policy of the PEP(102) through a continuous connection with the PEP(102). In response to a policy decision request from the PEP(102), the PDP(104) searches the policy warehouse(105) for suitable policy data using an LDAP(Lightweight Directory Access Protocol). The PDP(104) comprises a cache warehouse(114) storing high-priority policy data for policy decision.
Abstract translation: 目的:提供一种基于策略的网络系统,用于最大限度地减少策略执行的丢失和操作方法,以尽可能减少策略执行的损失,即使策略服务器发生故障,也可以通过使用缓存技术向策略客户端提供策略数据 访问策略缓存。 规定:基于策略的网络系统由PDP(策略决策点)(104),策略仓库(105)和PEP(策略执行点)(102)组成。 具有用于发送终端(101)和接收终端(103)的两个接口的策略客户端PEP(102)将数据从发送终端(101)传送到接收终端(103)。 PDP(104)(策略服务器)通过与PEP(102)的连续连接来决定PEP(102)的策略。 响应于来自PEP(102)的策略决定请求,PDP(104)使用LDAP(轻量级目录访问协议)在策略仓库(105)中搜索合适的策略数据。 PDP(104)包括存储用于策略决定的高优先级策略数据的高速缓存仓库(114)。
-