首页> 外文会议>Integrated Network Management, 2003. IFIP/IEEE Eighth International Symposium on >Firewall Policy Advisor for anomaly discovery and rule editing
【24h】

Firewall Policy Advisor for anomaly discovery and rule editing

机译:防火墙策略顾问,用于异常发现和规则编辑

获取原文

摘要

Firewalls are core elements in network security. However, managing firewall rules, especially for enterprize networks, has become complex and error-prone. Firewall filtering rules have to be carefully written and organized in order to correctly implement the security policy. In addition, inserting or modifying a filtering rule requires thorough analysis of the relationship between this rule and other rules in order to determine the proper order of this rule and commit the updates. In this paper, we present a set of techniques and algorithms that provide (1) automatic discovery of firewall policy anomalies to reveal rule conflicts and potential problems in legacy firewalls, and (2) anomaly-free policy editing for rule insertion, removal and modification. This is implemented in a user-friendly tool called "Firewall Policy Advisor". The Firewall Policy Advisor significantly simplifies the management of any generic firewall policy written as filtering rules, while minimizing network vulnerability due to firewall rule misconfiguration.
机译:防火墙是网络安全中的核心元素。然而,管理防火墙规则,尤其是对于企业网络而言,已变得复杂且容易出错。必须仔细编写和组织防火墙过滤规则,以正确实施安全策略。此外,插入或修改过滤规则要求彻底分析此规则与其他规则之间的关系,以便确定此规则的正确顺序并提交更新。在本文中,我们介绍了一组技术和算法,这些技术和算法提供(1)自动发现防火墙策略异常以揭示规则冲突和遗留防火墙中的潜在问题,以及(2)无异常策略编辑,用于规则的插入,删除和修改。 。这在称为“防火墙策略顾问”的用户友好工具中实现。防火墙策略顾问极大地简化了所有写为过滤规则的通用防火墙策略的管理,同时最大限度地减少了由于防火墙规则配置错误而引起的网络漏洞。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号