Title :
Formal Description and Verification of Security Filtered Rules
Author :
Zhao, Yue-Hua ; Hu, Bai ; Zhou, Cong-hua ; Ma, Jian-feng
Author_Institution :
Inst. of Comput. Sci. & Telecommun. Eng., Jiangsu Univ., Zhenjiang, China
Abstract :
With the ever-changing threat of network, packet-filtering firewall, an important instrument for resisting threat, has become the effective measure of host-computer protection. Its ability depends on the capability of filtered rules. This paper first describes filtered rules formally, and then tests the rules including the verification of special aims and security analysis based on model checking. The formal analysis and verification make the rules achieve the security administrators´ will of packet filtering and protect the system safe.
Keywords :
authorisation; computer network security; formal verification; information filtering; formal analysis; formal description; formal verification; host-computer protection; model checking; packet-filtering firewall; security analysis; security filtered rules; Filtering theory; IP networks; Protocols; Safety; Security; Waste materials; description; filtration; formalization of rules; network security; verification;
Conference_Titel :
Networking and Distributed Computing (ICNDC), 2010 First International Conference on
Conference_Location :
Hangzhou
Print_ISBN :
978-1-4244-8382-2
DOI :
10.1109/ICNDC.2010.55