Vendor : DePaul University
E-mail this page
Related Content
Remember this itemFormat: PDF
Date:
26/03/2007
Overview
The implementation of network security devices such as firewalls and IDSs are constantly being improved to accommodate higher security and performance standards. Using reliable and yet practical techniques for testing the functionality of firewall devices particularly after new filtering implementation or optimization becomes necessary to assure required security. Generating random traffic to test the functionality of firewall matching is inefficient and inaccurate as it requires an exponential number of test cases for a reasonable coverage. In addition, in most cases the policies used during testing are limited and manually generated representing fixed policy profiles. This paper presents a framework for automatic testing of the firewall policy enforcement or implementation using efficient random traffic and policy generation techniques.
|
|