首页> 外文会议>IEEE international conference on secure integration and reliability improvement >The 1st Workshop on Model-Based Verification Validation Directed Acyclic Graph Modeling of Security Policies for Firewall Testing
【24h】

The 1st Workshop on Model-Based Verification Validation Directed Acyclic Graph Modeling of Security Policies for Firewall Testing

机译:基于模型的验证和验证的第一个研讨会针对防火墙测试的安全策略的无循环图建模

获取原文

摘要

Currently network security of institutions highly depend on firewalls, which are used to separate untrusted network from trusted one by enforcing security policies. Security policies used in firewalls are ordered set of rules where each rule is represented as a predicate and an action. This paper proposes modeling of firewall rules via directed acyclic graphs (DAG), from which test cases can be automatically generated for firewall testing. The approach proposed follows test case generation algorithm developed for event sequence graphs. Under a local area network setup with the aid of a specifically developed software for this purpose, generated test cases are converted to network test packets, test packets are sent to the firewall under test (FUT), and sent packets are compared with passed packets to determine test result.
机译:目前,机构的网络安全高度依赖于防火墙,用于通过强制执行安全策略将不受信任的网络与可信赖的网络分离。防火墙中使用的安全策略是有序的一组规则,其中每个规则表示为谓词和动作。本文通过定向的非循环图(DAG)提出了防火墙规则的建模,可以从中自动生成用于防火墙测试的测试用例。该方法建议遵循用于事件序列图开发的测试案例生成算法。在局域网设置下,借助于专门开发的软件为此目的,生成的测试用例将转换为网络测试数据包,测试数据包将被发送到被测防火墙(FUT),并将发送的数据包与传递的数据包进行比较确定测试结果。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号