Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze
  1. Pubblicazioni

An algorithm for security policy migration in multiple firewall networks

Contributo in Atti di convegno
Data di Pubblicazione:
2021
Abstract:
Firewalls are effectively employed to protect network portions by blocking illegitimate traversing traffic. However, during traffic load peaks, possibly due to DoS-like attacks, they may become performance bottlenecks, introducing consistent delays/losses on legitimate packets. In multiple firewall networks, a cooperative approach to mitigate performance degradation caused by firewall overloads consists in suitably distributing responsibility for security policy implementation among available devices to balance workload. We present a technique for migrating security policies among firewalls in a sequence, formally verified to preserve the overall security policy implemented by the sequence itself. The technique can be used as building block in the development of cooperative solutions allowing to balance workload in networks where firewalls are arbitrarily placed to guard specific domains.
Tipologia CRIS:
04.01 Contributo in Atti di convegno
Keywords:
Firewalls; Network security; Policy migration; Formal methods
Elenco autori:
Durante, Luca; Seno, Lucia; Cheminod, Manuel; Valenzano, Adriano
Autori di Ateneo:
CHEMINOD MANUEL
DURANTE LUCA
Link alla scheda completa:
https://iris.cnr.it/handle/20.500.14243/397551
  • Dati Generali

Dati Generali

URL

http://ceur-ws.org/Vol-2940/paper29.pdf
  • Utilizzo dei cookie

Realizzato con VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)