期刊文献+
共找到1篇文章
< 1 >
每页显示 20 50 100
FPC: A New Approach to Firewall Policies Compression 被引量:1
1
作者 yuzhu cheng Weiping Wang +1 位作者 Jianxin Wang Haodong Wang 《Tsinghua Science and Technology》 SCIE EI CAS CSCD 2019年第1期65-76,共12页
Firewalls are crucial elements that enhance network security by examining the field values of every packet and deciding whether to accept or discard a packet according to the firewall policies. With the development of... Firewalls are crucial elements that enhance network security by examining the field values of every packet and deciding whether to accept or discard a packet according to the firewall policies. With the development of networks, the number of rules in firewalls has rapidly increased, consequently degrading network performance.In addition, because most real-life firewalls have been plagued with policy conflicts, malicious traffics can be allowed or legitimate traffics can be blocked. Moreover, because of the complexity of the firewall policies, it is very important to reduce the number of rules in a firewall while keeping the rule semantics unchanged and the target firewall rules conflict-free. In this study, we make three major contributions. First, we present a new approach in which a geometric model, multidimensional rectilinear polygon, is constructed for the firewall rules compression problem.Second, we propose a new scheme, Firewall Policies Compression(FPC), to compress the multidimensional firewall rules based on this geometric model. Third, we conducted extensive experiments to evaluate the performance of the proposed method. The experimental results demonstrate that the FPC method outperforms the existing approaches, in terms of compression ratio and efficiency while maintaining conflict-free firewall rules. 展开更多
关键词 FIREWALL FIREWALL POLICY NETWORK SECURITY FIREWALL RULES compression
原文传递
上一页 1 下一页 到第
使用帮助 返回顶部