Reasoning about firewall policies through refinement and composition

Autor: Simon N. Foley, Ultan Neville
Rok vydání: 2018
Předmět:
Zdroj: Journal of Computer Security. 26:207-254
ISSN: 1875-8924
0926-227X
DOI: 10.3233/jcs-17971
Popis: An algebra is proposed for constructing and reasoning about anomaly-free firewall policies. Based on the notion of refinement as safe replacement, the algebra provides operators for sequential composition, union and intersection of policies. The algebra is used to specify and reason about iptables firewall policy configurations. A prototype policy management toolkit has been implemented.
Databáze: OpenAIRE