Technology Tags
Technology Tags > Tag based links for Firewall
The following links have been tagged firewall by users just like you, because these resources are off-site we cannot guarantee the accuracy or quality of any third-party information.
- Building Linux
and OpenBSD
Firewalls: Linux J., Vol.
2000, No.
78es.
(2000)Ralph
Krause
Source: Linux J., Vol. 2000, No. 78es. (2000) - Evaluation and
testing of
internet
firewalls: Int. J. Netw.
Manag., Vol.
9, No. 3.
(1999), pp.
135-149.Khalid
Al-Tawil,
Ibrahim
Al-Kaltham
Source: Int. J. Netw. Manag., Vol. 9, No. 3. (1999), pp. 135-149. - Analysis of
Firewall
Policy Rules
Using Data
Mining
Techniques: Network
Operations and
Management
Symposium,
2006. NOMS
2006. 10th
IEEE/IFIP
(2006), pp.
305-315.Firewa
ll is the de
facto core
technology of
today's
network
security and
defense.
However, the
management of
firewall rules
has been
proven to be
complex,
error-prone,
costly and
inefficient
for many
large-networke
d
organizations.
These firewall
rules are
mostly
custom-designe
d and
hand-written
thus in
constant need
for tuning and
validation,
due to the
dynamic nature
of the traffic
characteristic
s,
ever-changing
network
environment
and its market
demands. One
of the main
problems that
we address in
this paper is
that how much
the firewall
rules are
useful,
up-to-dated,
well-organized
or efficient
to reflect the
current
characteristic
s of network
traffics. In
this paper, we
present a set
of techniques
and algorithms
to analysis
and manage
firewall
policy rules:
(1) data
mining
technique to
deduce
efficient
firewall
policy rules
by mining its
network
traffic log
based on its
frequency, (2)
filtering-rule
generalization
(FRG) to
reduce the
number of
policy rules
by
generalization
, and (3) a
technique to
identify any
decaying rule
and a set of
few dominant
rules, to
generate a new
set of
efficient
firewall
policy rules.
The anomaly
detection
based on the
mining exposes
many hidden
but not
detectable by
analyzing only
the firewall
policy rules,
resulting in
two new types
of the
anomalies. As
a result of
these
mechanisms,
network
security
administrators
can
automatically
review and
update the
rules. We have
developed a
prototype
system and
demonstrated
usefulness of
our
approachesK
Golnabi, RK
Min, L Khan, E
Al-Shaer
Source: Network Operations and Management Symposium, 2006. NOMS 2006. 10th IEEE/IFIP (2006), pp. 305-315. - Firewall
Policy Advisor
for anomaly
discovery and
rule editing: Integrated
Network
Management,
2003.
IFIP/IEEE
Eighth
International
Symposium on
(2003), pp.
17-30.Firewall
s are core
elements in
network
security.
However,
managing
firewall
rules,
especially for
enterprize
networks, has
become complex
and
error-prone.
Firewall
filtering
rules have to
be carefully
written and
organized in
order to
correctly
implement the
security
policy. In
addition,
inserting or
modifying a
filtering rule
requires
thorough
analysis of
the
relationship
between this
rule and other
rules in order
to determine
the proper
order of this
rule and
commit the
updates. In
this paper, we
present a set
of techniques
and algorithms
that provide
(1) automatic
discovery of
firewall
policy
anomalies to
reveal rule
conflicts and
potential
problems in
legacy
firewalls, and
(2)
anomaly-free
policy editing
for rule
insertion,
removal and
modification.
This is
implemented in
a
user-friendly
tool called
"Firewall
Policy
Advisor". The
Firewall
Policy Advisor
significantly
simplifies the
management of
any generic
firewall
policy written
as filtering
rules, while
minimizing
network
vulnerability
due to
firewall rule
misconfigurati
on.ES
Al-Shaer, HH
Hamed
Source: Integrated Network Management, 2003. IFIP/IEEE Eighth International Symposium on (2003), pp. 17-30. - FIREMAN: A
Toolkit for
FIREwall
Modeling and
ANalysis: (2006), pp.
199-213.Lihua
Yuan, Jianning
Mai, Zhendong
Su, Hao Chen,
Chen-Nee
Chuah, Prasant
Mohapatra
Source: (2006), pp. 199-213. - Algorithms for
analysing
firewall and
router access
lists: (1999)Network
firewalls and
routers use a
rule database
to decide
which packets
will be
allowed from
one network
onto another.
By filtering
packets the
firewalls and
routers can
improve
security and
performance.
However, as
the size of
the rule list
increases, it
becomes
difficult to
maintain and
validate the
rules, and
lookup latency
may increase
significantly.
Ordered binary
decision
diagrams
(BDDs) -- a
compact method
of
representing
and
manipulating
boolean
expressions --
are a
potential
method...S
Hazelhurst
Source: (1999)
If you would like to find additional social bookmark based links on the topic of firewall we recommend the Open Tag Directory > Firewall. If you would like to find related tags we recommend Tag Patterns > Firewall.



