论文部分内容阅读
SNMP是目前TCP/IP网络中应用最为广泛的网络管理协议。文中在介绍了SNMPv3协议的基本概念、体系结构以及安全特性的基础上,分析了目前SNMPv3安全机制的不足。在SNMPv3的基础上,扩展其访问控制模型,提出了一种以基于角色的动态访问控制模型来提高SNMPv3安全性的方案,使之具有简单、灵活、可用性强等特点。给出了具体的实现方法,并进行了仿真环境下的实验验证。验证结果表明,增强后的SNMPv3在访问控制方面更加符合实际需求,使用更方便。
SNMP is currently the most widely used network management protocol in TCP / IP networks. Based on the introduction of the basic concepts, architecture and security features of SNMPv3, this paper analyzes the deficiencies of the current SNMPv3 security mechanism. Based on SNMPv3, this paper extends its access control model and proposes a scheme based on the role-based dynamic access control model to improve SNMPv3 security, which is characterized by its simplicity, flexibility and usability. The concrete realization method is given and the experimental verification under the simulation environment is carried out. The verification results show that the enhanced SNMPv3 is more suitable for actual applications in terms of access control and is more convenient to use.