earticle

논문검색

The Research and Application of Multi-Firewall Technology in Enterprise Network Security

원문정보

초록

영어

A firewall’s complexity is known to increase with the size of its rule set. Empirical studies show that as the rule set grows larger, the number of configuration errors on a firewall increases sharply, while the performance of the firewall degrades. When designing a security-sensitive network, it is critical to construct the network topology and its routing structure carefully in order to reduce the multi-firewall rule sets, which helps lower the chance of security loopholes and prevent performance bottleneck. This paper studies the problems of how to place the firewalls in a topology during network design and how to construct the routing Tables during operation such that the maximum firewall rule set can be minimized. We have two major contributions. First, we prove that the problems are NP-complete. Second, we propose a heuristic solution and demonstrate the effectiveness of the algorithm by simulations. The results show that the proposed algorithm reduces the maximum multi-firewall rule set when comparing with other algorithms.

목차

Abstract
 1. Introduction
 2. Problem Definition
  2.1 Network Model
  2.2 Symbol Description
 3. Heuristic Method of Firewall Optimization
 4. Simulation Experiment
 5. The Application of Pair Firewall Technology in Enterprise
 6. Conclusion
 References

저자정보

  • Jing Li College of Information Engineering, Qingdao University, Qingdao Shandong 266071, China

참고문헌

자료제공 : 네이버학술정보

    함께 이용한 논문

      ※ 원문제공기관과의 협약기간이 종료되어 열람이 제한될 수 있습니다.

      0개의 논문이 장바구니에 담겼습니다.