DOI: 10.1007/978-3-540-88181-0_17
|View full text |Cite
|
Sign up to set email alerts
|

Automated Framework for Policy Optimization in Firewalls and Security Gateways

Abstract: The challenge to address in multi-firewall and security gateway environment is to implement conflict-free policies, necessary to avoid security inconsistency, and to optimize, at the same time, performances in term of average filtering time, in order to make firewalls stronger against DoS and DDoS attacks. Additionally the approach should be real time, based on the characteristics of network traffic. Our work defines an algorithm to find conflict free optimized device rule sets in real time, by relying on info… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1
1

Citation Types

0
2
0

Publication Types

Select...
1
1

Relationship

0
2

Authors

Journals

citations
Cited by 2 publications
(2 citation statements)
references
References 10 publications
0
2
0
Order By: Relevance
“…In [21], the authors proposed an architecture algorithm to automatically adapt packet inspection devices configuration according to traffic behavior. The algorithm provides adaptive conflict free optimization in the rule list, in which each rule is given a probability rate and cost weight.…”
Section: Related Workmentioning
confidence: 99%
“…In [21], the authors proposed an architecture algorithm to automatically adapt packet inspection devices configuration according to traffic behavior. The algorithm provides adaptive conflict free optimization in the rule list, in which each rule is given a probability rate and cost weight.…”
Section: Related Workmentioning
confidence: 99%
“…The non-heuristic general framework for rule-based firewall optimisation proposed in [18] captures the semantics of an access control list in terms of whether each packet is forwarded or denied instead of profiling the rules to determine their importance as in [9]. In [20], the authors propose an architecture algorithm to automatically adapt packet-filtering devices configuration according to the traffic behaviour. The adaptive conflict-free optimisation (ACO) algorithm provides adaptive conflict free optimisation in the security policy, in which each rule is given a probability rate and cost weight.…”
Section: Policy Boolean Expression Relaxation (Pber) Technique Inmentioning
confidence: 99%