| Title | Date Added | Company | |
|---|---|---|---|
![]() |
Automatic Verification of Firewall Configurations With Respect to Security Policy Requirements | 2009-06-10 | Dynamic Publishers |
| A firewall is a key security component in computer networks. It filters network traffic based on an ordered list of filtering rules. Firewall configurations must be correct and complete with respect to security policies. A security policy is a set of predicates, which is a high level description of traffic controls. This paper proposes an automatic method to verify the correctness of firewall configurations with respect to security policies. The paper defines Boolean formulae to represent security policy and firewall configuration and then one verifies their equivalence using the SAT solver. If the configuration is incorrect, the method produces a counterexample to help the user to correct his firewall configuration. The paper implemented this new technique and the first results were very promising.
Tags: Intrusion - Tampering, Security Administration |
|||
![]() |
A Novel Validation Method for Firewall Security Policy | 2009-06-10 | Dynamic Publishers |
| A Security Policy constitutes the core of network protection infrastructure. Thus, its development is a sensitive task because it can appears in opposition with some security requirements. A validation process for security policies becomes then necessary before their deployment. Nowadays, there is no automated tool in the network security world allowing such task. However, one has found that the theory developed in the software engineering domain to validate software projects can be adapted in the case because several similarities exist between the expressions of the needs in the two domains.
Tags: Intrusion - Tampering, Security Administration |
|||
![]() |
Finding an Optimized Discriminate Function for Internet Application Recognition | 2009-06-08 | Amirkabir University of Technology |
| Everyday the usages of the Internet increase and simply a world of the data become accessible. Network providers do not want to let the provided services to be used in harmful or terrorist affairs, so they used a variety of methods to protect the special regions from the harmful data. One of the most important methods is supposed to be the firewall. Firewall stops the transfer of such packets through several ways, but in some cases they do not use firewall because of its blind packet stopping, high process power needed and expensive prices.
Tags: Intrusion - Tampering |
|||
![]() |
Universal Weather and Aviation, Inc. Selects WebDefend to Protect Web Applications, Analyze Web Threats | 2009-06-08 | Breach Security |
| Universal Weather and Aviation, Inc. (Universal) began providing weather briefings specifically for corporate aviation in 1959. The confidentiality, integrity and availability of these assets are critical to the company's daily operations and long-term viability. As such, Universal's IT Security team must ensure that its information assets are protected against the unintentional disclosure of sensitive data. To that end, the company selected the WebDefend web application firewall from Breach Security. Once WebDefend was implemented in Universal's environment, the company was able to start seeing events in the WebDefend Management Console in less than one hour. WebDefend's profiling provided Universal with clear visibility even into some of its older legacy web applications.
Tags: Intrusion - Tampering, Security Administration |
|||
![]() |
Securing Shared Virtual Infrastructure With Virtual Firewalls | 2009-06-04 | VMware |
| Enterprises and service providers are increasingly sharing physical hosts among multiple departments and customers, requiring strong isolation between virtual machines. The new VMware VMsafe APIs in VMware vSphere 4 enable virtual firewalls to deliver fine-grained policy control of virtual machine traffic and network segmentation in a shared virtual environment. Security solutions harnessing the full potential of VMsafe APIs can deliver high-performance isolation while enabling virtualization features like cloning, rollbacks and virtual machine migration. The presenters of this webcast will demonstrate a VMsafe firewall and how it integrates with VMware vSphere to enhance security in a virtualized environment.
Tags: Intrusion - Tampering, Security Administration |
|||
![]() |
Financial Services Provider FNZ Invests in Future Prosperity With a Solid Network Foundation From F5 | 2009-05-18 | F5 Networks |
| Founded just four years ago, FNZ of Wellington, New Zealand, operates the financial services industry's most complete third-party, online account management service. The challenge was to deliver excellent online user performance, to provide 24/7 uptime for online clients, to eliminate security vulnerabilities and to establish a highly scalable infrastructure to support growth. It deployed BIG-IP Global Traffic Manager, BIG-IP Local Traffic Manager, BIG-IP Link Controller, BIG-IP Application Security Manager, FirePass SSL VPN, WANJet.
Tags: Security Administration, Authentication - Encryption |
|||
![]() |
Automatic Detection of Firewall Misconfigurations Using Firewall and Network Routing Policies | 2009-05-12 | Carnegie Mellon University |
| Firewalls are the most prevalent and important means of enforcing security policies inside networks and across organizational boundaries. However, effective and fault free firewall management in large and fast growing networks becomes increasingly more challenging. Firewall security policies are complex and their interaction with routing policies and applications further complicates policy configurations. It is often that routing is ignored in firewall management. Configuration problems can occur in a device or multiple devices along several network paths that change over time according to routing. The paper presents an application, Prometheus, which implements mechanisms for automatic detection of firewall configuration problems that are extremely difficult to resolve manually. In addition to firewall configurations, Prometheus incorporates and analyzes dynamic routing information.
Tags: Intrusion - Tampering, Security Administration |
|||
![]() |
Firewall Implementation and Testing | 2009-05-11 | Linkopings Universitet |
| Almost every machine on the internet today is protected by a firewall. Many of them are misconfigured which is seldom discovered due to poor testing. This paper summarizes the experiences in setting up and testing one's own firewall, as well as performing a penetration attack from an external machine to find misconfigurations. The paper also describes the tools one has used and how one used some of them.
Tags: Intrusion - Tampering |
|||
![]() |
101 Microsoft Windows XP Tips, Tweaks, and Hacks You Need to Know | 2009-05-05 | TPG |
Keep Windows XP machines running at peak performance with these tips, tweaks and hacks! These tips will help you achieve better performance, troubleshoot problems, and properly configure your Windows XP system. You'll also find many easy tweaks and hacks to allow you to customize all aspects of Windows XP to suit your needs. This download is available for free as part of a TechRepublic Pro membership, or it may be purchased through our on-line Store. Tags: IT Infrastructure, Intrusion - Tampering, Intrusion - Tampering, Desktop Client OS |
|||
![]() |
Semantic Firewall: An Approach Towards Autonomous Web Security in Service Oriented Environments | 2009-05-01 | Academy Publisher |
| As the technical infrastructure to support Grid environments matures, attention must be focused on integrating such technical infrastructure with technologies to support more dynamic access to services, and ensuring that such access is appropriately monitored and secured. The move towards supporting more autonomous systems, where decisions are made without direct user intervention, and more complex operating scenarios, where services from multiple organizations form temporary ties to solve particular problems, creates new security challenges.
Tags: Intrusion - Tampering, Security Administration |
Overwhelmed by consolidation? Take it in steps.
Learn the 5 steps to data center consolidation - download the whitepaper now.
An Action Plan for Creating a Collaborative Enterprise
Download the eBook by Cisco now!
Choose a career with Accenture in Singapore
A dynamic job opportunity where technology and business intersect
Choose a career with Accenture in Malaysia
A dynamic job opportunity where technology and business intersect
NetIQ DRA live demonstration:
Learn how to improve your efficiency when administering Active Directory
The Roots for a Greener World
Discover Hitachi's Environmental Vision 2025 and featured Eco-Products
The Desktop Virtualization Revolution is here!
Find our more with Citrix Simplicity is Power
Lack of visibility into network issues and performance?
Find out today. Download SolarWinds FREE 30-Day Trial Software here.
IT Salary Survey
Take our salary survey and be the first to view the 2010 IT Salary & Skills Report