Rule Anomalies Detection in Firewalls

被引:0
|
作者
Liao Xiaoju [1 ]
Wang Yi [1 ]
Lu Hai [1 ]
机构
[1] China Acad Engn Phys, Beijing 621900, Peoples R China
关键词
firewall; anomalies detection; firewall management; network security;
D O I
10.4028/www.scientific.net/KEM.474-476.822
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Firewall is the most prevalent and important technique to enforce the security inside the networks. However, effective and free anomalies rules management in large and fast growing networks becomes increasingly challenging. In this paper, we use a directed tree-based method to detect rule anomalies in firewall; in addition, this method can track the source of the anomalies. We believe the posed information will simplify the rules management and minimizing the networking vulnerability due to firewall rules misconfigurations.
引用
收藏
页码:822 / 827
页数:6
相关论文
共 50 条
  • [21] Fixpoint semantics for rule-base anomalies
    Zhang, D
    ICCI 2005: Fourth IEEE International Conference on Cognitive Informatics - Proceedings, 2005, : 10 - 17
  • [22] Approximate declarative semantics for rule base anomalies
    Zhang, D
    Luqi
    KNOWLEDGE-BASED SYSTEMS, 1999, 12 (07) : 341 - 353
  • [23] Anomaly detection of policies in distributed firewalls using data log analysis
    Azam Andalib
    Seyed Morteza Babamir
    The Journal of Supercomputing, 2023, 79 : 19473 - 19514
  • [24] Trace anomalies and the ΔI=1/2 rule
    Gérard, JM
    Weyers, J
    PHYSICS LETTERS B, 2001, 503 (1-2) : 99 - 103
  • [25] Evaporating firewalls
    Van Raamsdonk, Mark
    JOURNAL OF HIGH ENERGY PHYSICS, 2014, (11): : 1 - 16
  • [26] Transcompiling Firewalls
    Bodei, Chiara
    Degano, Pierpaolo
    Focardi, Riccardo
    Galletta, Letterio
    Tempesta, Mauro
    PRINCIPLES OF SECURITY AND TRUST, POST 2018, 2018, 10804 : 303 - 324
  • [27] Defending firewalls
    Hong, S
    COMPUTER, 2003, 36 (08) : 7 - 7
  • [28] INTERNET FIREWALLS
    COBB, S
    BYTE, 1995, 20 (10): : 179 - 180
  • [29] Unclothed firewalls
    Chen, Pisin
    Ong, Yen Chin
    Page, Don Nelson
    Sasaki, Misao
    Yeom, Dong-Han
    INTERNATIONAL JOURNAL OF MODERN PHYSICS D, 2016, 25 (13):
  • [30] Micro-firewalls for dynamic network security with distributed intrusion detection
    Hwang, K
    Gangadharan, M
    IEEE INTERNATIONAL SYMPOSIUM ON NETWORK COMPUTING AND APPLICATIONS, PROCEEDINGS, 2001, : 68 - 79