Passer à la navigation principale Passer à la recherche Passer au contenu principal

Towards filtering and alerting rule rewriting on single-component policies

  • ENST Bretagne
  • University of São Paulo

Résultats de recherche: Le chapitre dans un livre, un rapport, une anthologie ou une collectionContribution à une conférenceRevue par des pairs

11 Citations (Scopus)

Résumé

The use of firewalls and network intrusion detection systems (NIDSs) is the dominant method to survey and guarantee the security policy in current corporate networks. On the one hand, firewalls are traditional security components which provide means to filter traffic within corporate networks, as well as to police the incoming and outcoming interaction with the Internet, On the other hand, NIDSs are complementary security components used to enhance the visibility level of the network, pointing to malicious or anomalous traffic. To properly configure both firewalls and NIDSs, it is necessary the use of a set of configuration rules, i.e., a set of filtering or alerting rules. Nevertheless, the existence of anomalies within the set of configuration rules of both firewalls and NIDSs is very likely to degrade the network security policy. The discovering and removal of these anomalies is a serious and complex problem to solve. In this paper, we present a set of mechanisms for such a management.

langue originaleAnglais
titreComputer Safety, Reliability, and Security - 25th International Conference, SAFECOMP 2006. Proceedings
EditeurSpringer Verlag
Pages182-194
Nombre de pages13
ISBN (imprimé)3540457623, 9783540457626
Les DOIs
étatPublié - 1 janv. 2006
Modification externeOui
Evénement25th International Conference on Computer Safety, Reliability, and Security, SAFECOMP 2006 - Gdansk, Pologne
Durée: 27 sept. 200629 sept. 2006

Série de publications

NomLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume4166 LNCS
ISSN (imprimé)0302-9743
ISSN (Electronique)1611-3349

Une conférence

Une conférence25th International Conference on Computer Safety, Reliability, and Security, SAFECOMP 2006
Pays/TerritoirePologne
La villeGdansk
période27/09/0629/09/06

Empreinte digitale

Examiner les sujets de recherche de « Towards filtering and alerting rule rewriting on single-component policies ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation