A Flexible Policy-Based Firewall Management Framework

被引:2
|
作者
Wu Jin-hua [1 ]
Chen Xiao-su [1 ]
Zhao Yi-zhu [1 ]
Ni Jun [1 ]
机构
[1] Huazhong Univ Sci & Technol, Sch Comp Sci & Technol, Wuhan 430074, Peoples R China
关键词
D O I
10.1109/CW.2008.134
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Firewalls are important elements in today's network security. This paper presents a flexible policy-based firewall management framework. The framework provides policy-based management to manage different types of firewalls, such as packet filter firewall, application layer firewall. It is important to know whether the firewall policy configuration and enforcement is correct. We believe that there is a need to verify firewall configurations before and after they are deployed our framework uses a analyze tool to discover inconsistency before policies are deployed, the tool is based on formal specification and analysis of policy rule relations. Our framework also provides an automated mechanism for validating firewall policy enforcement after they are deployed
引用
收藏
页码:192 / 194
页数:3
相关论文
共 50 条
  • [1] A policy-based approach to firewall management
    Caldeira, F
    Monteiro, E
    NETWORK CONTROL AND ENGINEERING FOR QOS, SECURITY AND MOBILITY, 2003, 107 : 115 - 126
  • [2] Policy-based networking: applications to firewall management
    Caldeira, F
    Monteiro, E
    ANNALS OF TELECOMMUNICATIONS, 2004, 59 (1-2) : 38 - 54
  • [3] A policy-based storage management framework
    Devarakonda, M
    Gelb, J
    Saha, A
    Strickland, J
    THIRD INTERNATION WORKSHOP ON POLICIES FOR DISTRIBUTED SYSTEMS AND NETWORKS, PROCEEDINGS, 2002, : 232 - 235
  • [4] Firewall analysis with policy-based host classification
    Marmorstein, Robert
    Kearns, Phil
    LISA 06: USENIX ASSOCIATION PROCEEDINGS OF THE 20TH LARGE INSTALLATION SYSTEM ADMINISTRATION CONFERENCE, 2006, : 41 - +
  • [5] Policy-Based Labelling: A Flexible Framework for Trusted Data Labelling
    Kongsgard, Kyrre Wahl
    Nordbotten, Nils Agne
    Fauskanger, Stian
    2015 INTERNATIONAL CONFERENCE ON MILITARY COMMUNICATIONS AND INFORMATION SYSTEMS (ICMCIS), 2015,
  • [6] Dynamic Policy-Based Routing using Firewall Rules
    Tantipongsakul, Kavin
    Khunkitti, Akharin
    2009 THIRD UKSIM EUROPEAN SYMPOSIUM ON COMPUTER MODELING AND SIMULATION (EMS 2009), 2009, : 540 - 545
  • [7] A policy-based framework for interoperable digital content management
    Figueira Filho, Fernando Marques
    de Albuquerque, Joao Porto
    de Geus, Paulo Licio
    Krumm, Heiko
    2007 4TH IEEE CONSUMER COMMUNICATIONS AND NETWORKING CONFERENCE, VOLS 1-3, 2007, : 945 - +
  • [8] PBMAN: A policy-based management framework for ambient networks
    Kamienski, Carlos
    Fidalgo, Joseane
    Sadok, Djamel
    Lima, Jennifer
    Pereira, Leonardo
    Ohlman, Borje
    SEVENTH IEEE INTERNATIONAL WORKSHOP ON POLICIES FOR DISTRIBUTED SYSTEMS AND NETWORKS, PROCEEDINGS, 2006, : 76 - +
  • [9] An Adaptive Policy-Based Framework for Network Services Management
    Leonidas Lymberopoulos
    Emil Lupu
    Morris Sloman
    Journal of Network and Systems Management, 2003, 11 (3) : 277 - 303
  • [10] Secure and Flexible Model for Firewall Policy Management
    Gheorghica, Daniel
    Croitoru, Victor
    2010 9TH INTERNATIONAL SYMPOSIUM ON ELECTRONICS AND TELECOMMUNICATIONS (ISETC), 2010, : 183 - 186