Member Login

E-mail:    Password:  


Vendor : Universitat Autonoma de Barcelona


Email  E-mail this page

Related Content  Related Content

Remember  Remember this item

 

Format: PDF

Date: 01/12/2007


Detection and Removal of Firewall Misconfiguration

WORTHWHILE?

0

0 votes


Overview

To police network traffic, firewalls must be configured with a set of filtering rules. The existence of errors in this set is very likely to degrade the network security policy. The management of these configuration errors is a serious and complex problem to solve. This paper presents a set of algorithms to manage rules that never apply or are redundant in a firewall configuration. The approach is based on the analysis of relationships between the set of filtering rules. Then, a subsequent rewriting of rules will derive from an initial firewall setup to an equivalent one completely free of errors. At the same time, the algorithms will detect both shadowed and redundant rules in the initial firewall configuration.



See also: Network Security, Security Tools