Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • People
  • Outputs
  • Organizations
  • Expertise & Skills

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • People
  • Outputs
  • Organizations
  • Expertise & Skills
  1. Outputs

An algorithm for security policy migration in multiple firewall networks

Conference Paper
Publication Date:
2021
abstract:
Firewalls are effectively employed to protect network portions by blocking illegitimate traversing traffic. However, during traffic load peaks, possibly due to DoS-like attacks, they may become performance bottlenecks, introducing consistent delays/losses on legitimate packets. In multiple firewall networks, a cooperative approach to mitigate performance degradation caused by firewall overloads consists in suitably distributing responsibility for security policy implementation among available devices to balance workload. We present a technique for migrating security policies among firewalls in a sequence, formally verified to preserve the overall security policy implemented by the sequence itself. The technique can be used as building block in the development of cooperative solutions allowing to balance workload in networks where firewalls are arbitrarily placed to guard specific domains.
Iris type:
04.01 Contributo in Atti di convegno
Keywords:
Firewalls; Network security; Policy migration; Formal methods
List of contributors:
Durante, Luca; Seno, Lucia; Cheminod, Manuel; Valenzano, Adriano
Authors of the University:
CHEMINOD MANUEL
DURANTE LUCA
Handle:
https://iris.cnr.it/handle/20.500.14243/397551
  • Overview

Overview

URL

http://ceur-ws.org/Vol-2940/paper29.pdf
  • Use of cookies

Powered by VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)