On the isofunctionality of network access control lists

Research output: Chapter in Book/Report/Conference proceedingConference contributionpeer-review

Abstract

In a networking context, Access Control Lists (ACLs) refer to security rules associated to network equipment, such as routers, switches and firewalls. Methods and tools to automate the management of ACLs distributed among several equipment shall verify if the corresponding ACLs are functionally equivalent. In this paper, we address such a verification process. We present a formal method to verify when two ACLs are iso functional and illustrate our proposal over a practical example.

Original languageEnglish
Title of host publicationProceedings - 10th International Conference on Availability, Reliability and Security, ARES 2015
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages168-173
Number of pages6
ISBN (Electronic)9781467365901
DOIs
Publication statusPublished - 16 Oct 2015
Externally publishedYes
Event10th International Conference on Availability, Reliability and Security, ARES 2015 - Toulouse, France
Duration: 24 Aug 201527 Aug 2015

Publication series

NameProceedings - 10th International Conference on Availability, Reliability and Security, ARES 2015

Conference

Conference10th International Conference on Availability, Reliability and Security, ARES 2015
Country/TerritoryFrance
CityToulouse
Period24/08/1527/08/15

Keywords

  • Access Control
  • Authorization
  • Computer Security
  • Network Security
  • Policy Analysis
  • Policy Management

Fingerprint

Dive into the research topics of 'On the isofunctionality of network access control lists'. Together they form a unique fingerprint.

Cite this