首页> 中文期刊>中国通信 >Modeling and Global Conflict Analysis of Firewall Policy

Modeling and Global Conflict Analysis of Firewall Policy

     

摘要

The global view of firewall policy conflict is important for administrators to optimize the policy.It has been lack of appropriate firewall policy global conflict analysis,existing methods focus on local conflict detection.We research the global conflict detection algorithm in this paper.We presented a semantic model that captures more complete classifications of the policy using knowledge concept in rough set.Based on this model,we presented the global conflict formal model,and represent it with OBDD(Ordered Binary Decision Diagram).Then we developed GFPCDA(Global Firewall Policy Conflict Detection Algorithm) algorithm to detect global conflict.In experiment,we evaluated the usability of our semantic model by eliminating the false positives and false negatives caused by incomplete policy semantic model,of a classical algorithm.We compared this algorithm with GFPCDA algorithm.The results show that GFPCDA detects conflicts more precisely and independently,and has better performance.

著录项

  • 来源
    《中国通信》|2014年第5期|124-135|共12页
  • 作者单位

    Beijing Key Laboratory of Network Technology, Beihang University, Beijing 100191, P.R.China;

    Beijing Key Laboratory of Network Technology, Beihang University, Beijing 100191, P.R.China;

    Beijing Information Science & Technology University, Beijing 100192, P.R.China;

    Software Development Center of China Agricultural Bank, Beijing 100073, P.R.China;

    College of Computer Science and Information Technology, Guangxi Normal University, Guilin 541004, Guangxi Province, P.R.China;

  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

  • 入库时间 2023-07-25 20:36:38

相似文献

  • 中文文献
  • 外文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号