Design and Implementation of an Automated Dynamic Rule System for Distributed Firewalls

被引:0
|
作者
Tudosi, Andrei-Daniel [1 ]
Graur, Adrian [1 ]
Balan, Doru Gabriel [1 ]
Potorac, Alin Dan [1 ]
Tarabuta, Radu-Cezar [1 ]
机构
[1] Stefan cel Mare Univ Suceava, Dept Comp Elect & Automat, Suceava 720229, Romania
关键词
application programming interfaces; communication system security; computer network management; firewalls; platform virtualization;
D O I
暂无
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Zero-day vulnerabilities are undisclosed security flaws exploited by attackers to gain unauthorized access to vulnerable systems. Firewalls and antivirus software are essential for preventing intrusions. While firewalls monitor network traffic to prevent unauthorized access, they may struggle to filter all incoming traffic due to attacker-generated anomalies. We present a novel approach to automate the generation of dynamic firewall rules, aiming to address this challenge through the utilization of a custom software solution in conjunction with a suitable programming language. This approach autonomously maintains and updates firewall rules, bolstering network security and streamlining the identification and mitigation of zero-day vulnerabilities. We evaluated the approach on a simulated network, demonstrating its efficacy in detecting and preventing unauthorized access through zero-day attacks. Our automated method for dynamic firewall rule creation offers an efficient means to address zero-day vulnerabilities. It empowers businesses to safeguard against cyberattacks and protect sensitive data. With adaptability to changing network requirements, it is valuable for organizations of different scales. In conclusion, our proposed automated approach for dynamic firewall rule generation provides a scientifically validated solution to address zero-day vulnerabilities. It enhances security measures, defends against emerging threats, and enables businesses to protect their systems and data effectively.
引用
收藏
页码:29 / 38
页数:10
相关论文
共 50 条
  • [11] Design and implementation of a distributed database system
    Basumallick, S
    Wong, JSK
    JOURNAL OF SYSTEMS AND SOFTWARE, 1996, 34 (01) : 21 - 29
  • [12] An Implementation of a Rule-Based Distributed Video Processing System
    Kawakami, Tomoya
    Matsumoto, Satoru
    Ishi, Yoshimasa
    Yoshihisa, Tomoki
    Teranishi, Yuuichi
    2017 23RD IEEE INTERNATIONAL SYMPOSIUM ON LOCAL AND METROPOLITAN AREA NETWORKS (LANMAN), 2017,
  • [13] Automated Plan Evaluation System: Design and Implementation
    Kapur, Priyanka
    Kapoor, Rishabh
    Kapoor, S. L.
    MEDICAL PHYSICS, 2011, 38 (06) : 3491 - +
  • [14] Design and Implementation of Distributed Dynamic Spectrum Allocation Protocol
    Hamdi, Rami
    Ben Ghorbel, Mehdi
    Hamdaoui, Bechir
    Guizani, Mohsen
    2014 IEEE INTERNATIONAL CONFERENCE ON COMMUNICATIONS WORKSHOPS (ICC), 2014, : 274 - 278
  • [15] Design of rule system for reasoning in a distributed business logic
    Swamynathan, S
    Geetha, TV
    6TH WORLD MULTICONFERENCE ON SYSTEMICS, CYBERNETICS AND INFORMATICS, VOL I, PROCEEDINGS: INFORMATION SYSTEMS DEVELOPMENT I, 2002, : 257 - 261
  • [16] The design and implementation of Drools rule set's dynamic configuration
    Wang Shunyan
    Cao Yongliang
    Zhong Luo
    ADVANCED COMPUTER TECHNOLOGY, NEW EDUCATION, PROCEEDINGS, 2007, : 934 - 937
  • [17] Design and Implementation of a Dynamic Map Template Based on Rule Combination
    Xu, Li
    Chen, Xiaohui
    Sun, Mengting
    Chen, Huanxin
    PROCEEDINGS OF THE 12TH INTERNATIONAL SYMPOSIUM ON VISUAL INFORMATION COMMUNICATION AND INTERACTION, VINCI 2019, 2019,
  • [18] Automated rule-based diagnosis through a distributed monitor system
    Khanna, Gunjan
    Cheng, Mike Yu
    Varadharajan, Padma
    Bagchi, Saurabh
    Correia, Miguel P.
    Verissimo, Paulo J.
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2007, 4 (04) : 266 - 279
  • [19] Design and Implementation of a Heterogeneous Distributed Database System
    金志权
    柳诚飞
    孙钟秀
    周晓方
    陈佩佩
    顾建明
    Journal of Computer Science and Technology, 1990, (04) : 363 - 373
  • [20] Design and Implementation of an Efficient Distributed Assessment System
    El-Bakry, Hazem M.
    Mastorakis, Nikos
    PROCEEDINGS OF THE 13TH WSEAS INTERNATIONAL CONFERENCE ON COMPUTERS, 2009, : 566 - +