• DocumentCode
    2592985
  • Title

    A simplified graph-based methodology for analyzing firewall rules

  • Author

    Permpoontanalarp, Yongyuth ; Pipattanasakul, Sarawut

  • Author_Institution
    Dept. of Comput. Eng., King Mongkut´´s Univ. of Technol. Thonburi, Bangkok
  • Volume
    1
  • fYear
    2008
  • fDate
    14-17 May 2008
  • Firstpage
    105
  • Lastpage
    108
  • Abstract
    Configuring firewalls is a difficult task. The reason is that the effects of firewall rules cannot be seen during the configuration time. As a result, errors and loopholes in firewall rules are discovered only at the run time and they often cause attacks. In this paper, we develop a simplified graph-based method for analyzing firewall rules. Our new model provides advantages over all existing methods in that it can compute effects of firewall rules at multiple firewalls in an intuitive and efficient way.
  • Keywords
    authorisation; computer networks; graph theory; firewall rules; multiple firewalls; simplified graph-based methodology; Computational modeling; Computer errors; Computer security; Hardware; IP networks; Information filtering; Information filters; Logic; Network topology; Protection;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Electrical Engineering/Electronics, Computer, Telecommunications and Information Technology, 2008. ECTI-CON 2008. 5th International Conference on
  • Conference_Location
    Krabi
  • Print_ISBN
    978-1-4244-2101-5
  • Electronic_ISBN
    978-1-4244-2102-2
  • Type

    conf

  • DOI
    10.1109/ECTICON.2008.4600383
  • Filename
    4600383