Optimization of Firewall Rules (CROSBI ID 530802)
Prilog sa skupa u zborniku | izvorni znanstveni rad | međunarodna recenzija
Podaci o odgovornosti
Katić, Tihomir ; Pale, Predrag
engleski
Optimization of Firewall Rules
Network performance highly depends on efficiency of the firewall because for each network packet which enters or leaves the network a decision has to be made whether to accept it or reject it. This paper presents one approach to rule optimization solutions for improving firewall performance. The new software solution has been developed based on relations between rules. Its main purpose is to remove anomalies in ordering of Linux firewall rules and to merge similar rules. Developed rule optimization software (FIRO) is intended to be used with IP Tables Linux firewall command tool, but it can be easily adapted for other tool, as well. FIRO works in several passes through revised rule lists. In each step of optimization process FIRO generates a different rule list. Unlike existing solutions, FIRO also analyzes log rules and takes into account other rule parameters besides IP addresses, ports, protocols and action.
firewall; rules; optimization; relations; anomalies; policy
nije evidentirano
nije evidentirano
nije evidentirano
nije evidentirano
nije evidentirano
nije evidentirano
Podaci o prilogu
685-690-x.
2007.
objavljeno
Podaci o matičnoj publikaciji
Proceedings of the 29th International Conference on Information Technology Interfaces
Lužar-Stiffler, Vesna ; Dobić Hljuz, Vesna
Zagreb: Sveučilišni računski centar Sveučilišta u Zagrebu (Srce)
953-7138-10-0
Podaci o skupu
International Conference on Information Technology Interfaces
predavanje
23.06.2007-26.06.2007
Cavtat, Hrvatska