DocumentCode :
2592985
Title :
A simplified graph-based methodology for analyzing firewall rules
Author :
Permpoontanalarp, Yongyuth ; Pipattanasakul, Sarawut
Author_Institution :
Dept. of Comput. Eng., King Mongkut´´s Univ. of Technol. Thonburi, Bangkok
Volume :
1
fYear :
2008
fDate :
14-17 May 2008
Firstpage :
105
Lastpage :
108
Abstract :
Configuring firewalls is a difficult task. The reason is that the effects of firewall rules cannot be seen during the configuration time. As a result, errors and loopholes in firewall rules are discovered only at the run time and they often cause attacks. In this paper, we develop a simplified graph-based method for analyzing firewall rules. Our new model provides advantages over all existing methods in that it can compute effects of firewall rules at multiple firewalls in an intuitive and efficient way.
Keywords :
authorisation; computer networks; graph theory; firewall rules; multiple firewalls; simplified graph-based methodology; Computational modeling; Computer errors; Computer security; Hardware; IP networks; Information filtering; Information filters; Logic; Network topology; Protection;
fLanguage :
English
Publisher :
ieee
Conference_Titel :
Electrical Engineering/Electronics, Computer, Telecommunications and Information Technology, 2008. ECTI-CON 2008. 5th International Conference on
Conference_Location :
Krabi
Print_ISBN :
978-1-4244-2101-5
Electronic_ISBN :
978-1-4244-2102-2
Type :
conf
DOI :
10.1109/ECTICON.2008.4600383
Filename :
4600383
Link To Document :
بازگشت