Reasoning about firewall policies through refinement and composition
Autor: | Simon N. Foley, Ultan Neville |
---|---|
Rok vydání: | 2018 |
Předmět: |
Firewall (construction)
Computer Networks and Communications Hardware and Architecture Programming language Computer science 0202 electrical engineering electronic engineering information engineering 020206 networking & telecommunications 020207 software engineering 02 engineering and technology Safety Risk Reliability and Quality computer.software_genre computer Software |
Zdroj: | Journal of Computer Security. 26:207-254 |
ISSN: | 1875-8924 0926-227X |
DOI: | 10.3233/jcs-17971 |
Popis: | An algebra is proposed for constructing and reasoning about anomaly-free firewall policies. Based on the notion of refinement as safe replacement, the algebra provides operators for sequential composition, union and intersection of policies. The algebra is used to specify and reason about iptables firewall policy configurations. A prototype policy management toolkit has been implemented. |
Databáze: | OpenAIRE |
Externí odkaz: |