13.09.2014 Views

Local Area Networks (LANs) in Aircraft - FTP Directory Listing - FAA

Local Area Networks (LANs) in Aircraft - FTP Directory Listing - FAA

Local Area Networks (LANs) in Aircraft - FTP Directory Listing - FAA

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

imploded due to the complexity of policy semantics caus<strong>in</strong>g prohibitive schema complexity <strong>in</strong><br />

multivendor environments. Because of this, the only surviv<strong>in</strong>g PBN systems are vendor<br />

proprietary systems that are limited to a specific vendor’s product l<strong>in</strong>es. The rema<strong>in</strong>der of this<br />

section can be skipped for readers who are not <strong>in</strong>terested <strong>in</strong> this topic because it does not relate<br />

to the exemplar network architecture recommended by this study <strong>in</strong> any way.<br />

Figure 23 shows a PBN framework that generically applies to many of the historic PBN<br />

approaches.<br />

Policy<br />

Repository<br />

Policy<br />

Management<br />

Tool<br />

PDP<br />

IP Packets<br />

to/from other<br />

Network Devices<br />

PEP<br />

IP Packets<br />

to/from other<br />

Network Devices<br />

Figure 23. Historic PBN Framework<br />

This figure is comprised of the follow<strong>in</strong>g entities:<br />

• A policy management tool that modifies the data found with<strong>in</strong> the policy repository to<br />

articulate the current policies of the current deployment (e.g., a policy language response<br />

to environmental triggers). Policy is a set of rules that are used to manage and control the<br />

chang<strong>in</strong>g or ma<strong>in</strong>ta<strong>in</strong><strong>in</strong>g the state of one or more managed objects. A policy rule is made<br />

up of four items: (1) metadata and semantics that def<strong>in</strong>e the behavior of the policy, (2)<br />

one or more events that trigger the policy, (3) a condition clause, and (4) an action clause.<br />

• There are two dist<strong>in</strong>ct functions with<strong>in</strong> PBN systems:<br />

- Policy Distribution Po<strong>in</strong>t is the mechanism for push<strong>in</strong>g policies and configuration<br />

data to configure a policy enforcement po<strong>in</strong>t (PEP).<br />

- Policy Decision Po<strong>in</strong>t is the functionality used by a PEP to enquire what it should<br />

do <strong>in</strong> specific situations. In this latter use case, the policy decision po<strong>in</strong>t <strong>in</strong>structs<br />

the PEP as to the proper action it should perform to enact the policies established<br />

for that AS.<br />

• The PEP is the entity that actually enacts policy (i.e., a device).<br />

70

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!