On the isofunctionality of network access control listsReport as inadecuate




On the isofunctionality of network access control lists - Download this document for free, or read online. Document in PDF available to download.

1 RST - Département Réseaux et Services de Télécommunications 2 SAMOVAR - Services répartis, Architectures, MOdélisation, Validation, Administration des Réseaux 3 R3S-SAMOVAR - Réseaux, Systèmes, Services, Sécurité SAMOVAR - Services répartis, Architectures, MOdélisation, Validation, Administration des Réseaux

Abstract : In a networking context, Access Control Lists ACLs refer to security rules associated to network equipment, such as routers, switches and firewalls. Methods and tools to automate the management of ACLs distributed among several equipment shall verify if the corresponding ACLs are functionally equivalent. In this paper, we address such a verification process. We present a formal method to verify when two ACLs are iso functional and illustrate our proposal over a practical example

Keywords : Network security Computer security Authorization Access control Policy analysis Policy management





Author: Malek Belhaouane - Joaquin Garcia-Alfaro - Hervé Debar -

Source: https://hal.archives-ouvertes.fr/



DOWNLOAD PDF




Related documents