首页> 外文期刊>Journal of computational science >FARE: FDD-based firewall anomalies resolution tool
【24h】

FARE: FDD-based firewall anomalies resolution tool

机译:票价:基于FDD的防火墙异常解决工具

获取原文
获取原文并翻译 | 示例
           

摘要

Problems arising from firewall misconfigurations are common and have dramatic consequences for networks operations. Therefore, the discovery and removal of these misconfigurations is a serious and complex problem to solve. In this paper, we address this problem using a data structure (FDD: fire wall decision diagram). We propose a new approach to rule-set optimization and clean-up, by removing superfluous rules from a simple firewall and a totally automatic method to detect and fix misconfigurations. We present also a new classification of anomalies in multi-firewall environment bringing out real configurations errors. We proved the correctness and completeness of our method and demonstrated its scalability and applicability on configurations provided by the Tunisian Ministry of Finance Computer Centre (CIMF), and found promising results. (C) 2017 Elsevier B.V. All rights reserved.
机译:防火墙配置错误引起的问题很普遍,并且对网络运行产生了严重的影响。因此,发现和消除这些错误配置是一个严重而复杂的问题。在本文中,我们使用数据结构(FDD:防火墙决策图)解决了这个问题。通过从简单的防火墙中删除多余的规则以及一种用于检测和修复错误配置的全自动方法,我们提出了一种新的规则集优化和清除方法。我们还提出了多防火墙环境中异常的新分类,从而带来了实际配置错误。我们证明了该方法的正确性和完整性,并在突尼斯财政部计算机中心(CIMF)提供的配置上证明了其可扩展性和适用性,并找到了可喜的结果。 (C)2017 Elsevier B.V.保留所有权利。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号