Functional Extension for Solving the Loophole Problem of DACS Scheme
Kazuya Odagiri, Rihito Yaegashi, Masaharu Tadauchi, Naohiro Ishii · 2007
Where customers with different membership and position, use computers as in the university network systems, it often takes much time and efforts for them to cope with the change of the system management. This is because the requirements for the respective computer usage are different in the network and security policies. In this paper, destination addressing control system scheme (DACS scheme) for the university network services is shown. The DACS scheme performs network management efficiently through the communication management of a client. As the characteristic of DACS scheme, only the setup modification is required by a system administrator, when configuration change of the network system is performed. Then, the setup modification is unnecessary by a customer, which shows a merit for both a system administrator and a customer. However, there is a problem to be solved. In existing DACS scheme, it is promised that, DACS client for controlling the communication must be implemented on all clients. When the client not installing DACS client is connected to the network, each network server can be accessed from the client. Therefore, in this paper, secure DACS scheme with function to prevent the communication from the client not installing DACS client, is proposed and examined.