首页> 外文会议>International Conference of Signal Processing, Communications and Networking >Analysis Methods of Firewall Policies by using Spatial Relationships between Filters
【24h】

Analysis Methods of Firewall Policies by using Spatial Relationships between Filters

机译:通过使用过滤器之间的空间关系来分析防火墙策略的方法

获取原文

摘要

Network security can be increased by filtering packets at a firewall. Packet filtering examines network packets and decides whether to accept or deny them, and these decisions are made according to policies that are established by the network administrator and implemented by specific filters. An administrator who finds it hard to understand and maintain a policy, will not easily find problems that occur when the filters are changed (added, deleted, or replaced) or when hierarchical firewalls are used and will therefore not be certain that the intended policies are implemented correctly and completely. In this paper, we consider the relations of filters as spatial relations, and propose three analysis methods (Impact Inferring, Equality Judgment, and Composition Analysis) to determine anomalies of firewall policies by using spatial relations between filters.
机译:通过在防火墙上过滤数据包可以增加网络安全性。数据包过滤检查网络数据包并决定是否接受或拒绝它们,并且这些决策是根据网络管理员建立的策略并由特定过滤器实现的策略进行。一个管理员发现很难理解和维护策略,在更改过滤器(添加,删除或替换)或使用分层防火墙时,不会轻易找到发生的问题,因此不确定预期的策略是正确完全实现。在本文中,我们认为过滤器的关系作为空间关系,并提出了三种分析方法(影响推断,平等判断和成分分析)来通过使用过滤器之间的空间关系来确定防火墙策略的异常。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号