首页> 外文会议>International Conference on Availability, Reliability and Security >CSP-Based Firewall Rule Set Diagnosis using Security Policies
【24h】

CSP-Based Firewall Rule Set Diagnosis using Security Policies

机译:基于CSP的防火墙规则使用安全策略设置诊断

获取原文

摘要

The most important part of a firewall configuration process is the implementation of a security policy by a security administrator. However, this security policy is not designed by higher levels of the organisation, nor is written anywhere, so it is very usual to make mistakes in its implementation. To solve this problem we propose to express this global access control policy in some informal language that is translated to a model specification in conjunction with the firewall rule set. Then we construct a Constraint Satisfaction Problem to detect and identify the possible inconsistencies between the specified policy and the firewall rule set.
机译:防火墙配置过程中最重要的部分是安全管理员执行安全策略。但是,这种安全策略不是由组织的更高层次的设计,也不是在任何地方写入,因此在其实施中犯错误是非常常见的。要解决此问题,我们建议以某种非正式语言表达此全局访问控制策略,该策略与防火墙规则集一起转换为模型规范。然后,我们构建一个约束满足问题,以检测和确定指定策略和防火墙规则集之间的可能不一致。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号