Policy-based Security Management Project (PBSM)
The Policy Based Security Management System is a distributed system
which dynamically provides hosts and security gateways with the policy
information required to establish a secure communication
end-to-end. The goal of PBSM is to provide the following services to
hosts and security gateways:
- Discovery of security gateways
- Management of dynamic security associations.
- Resolution of security requirements for inter-domain communication
- Consistency checking of local security policies.
PBSM includes a security policy specification language, SPSL, that
allows one to specify security policies in terms of primitives such as
user identity, source and destination machine address and port
number, encryption and authentication algorithms.
Latest Release
- The latest export controlled release of PBSM (11/18/98) may be
requested from mcondell@bbn.com
- An exportable release is not available.
Other Released Code
- The source code for a parser for the Security Policy
Specification Language (SPSL) is also available for download
separately, and is not export-controlled. Click
here to download it.
- The source code for an application that takes BNF and generates
scanner and parser definitions for lex/flex and yacc/bison is also
available for download separately, and is not export-controlled.
Click here to download it.
Documentation
Internet Drafts
Presentations
PBSM Related Links
Contact Info and Mailing Lists
We have set up a mailing list to discuss PBSM issues and code. The
mailing list is pbsm@cotton.ir.bbn.com. You
can subscribe to this list by sending an empty message to
pbsm-subscribe@cotton.ir.bbn.com.
If you would like instructions for
subscribing, etc, send mail to
pbsm-help@cotton.ir.bbn.com
Bug reports (and patches, if available) may be sent to :
pbsm-bugs@cotton.ir.bbn.com
If you'd like to contact the core developers of PBSM, send mail to:
pbsm-core@cotton.ir.bbn.com
Advanced
Networking Dept.