Formal analysis of firewalls using tree automata techniques - Inria - Institut national de recherche en sciences et technologies du numérique Accéder directement au contenu
Communication Dans Un Congrès Année : 2010

Formal analysis of firewalls using tree automata techniques

Tony Bourdier

Résumé

Since the late 80s, firewalls are at the heart of network security. First designed to enable private networks to be opened up to the outside in a secure way, the growing complexity of organizations make them indispensable to control information flow within a company. The central role of firewalls in the security of the organization information make their management a critical task. That is why for years many works have focused on checking and analysing firewalls. In this paper, we propose a new approach for analysing firewalls, based on tree automata techniques: we show that tree automata provide a way to compare firewalls and to perform all usual analysis of firewalls (including the network address translation (NAT) functionality) in a unique formalism.
Fichier principal
Vignette du fichier
paper.pdf (345.95 Ko) Télécharger le fichier
Origine : Fichiers produits par l'(les) auteur(s)

Dates et versions

inria-00460462 , version 1 (01-03-2010)
inria-00460462 , version 2 (25-05-2010)
inria-00460462 , version 3 (18-04-2011)

Identifiants

  • HAL Id : inria-00460462 , version 2

Citer

Tony Bourdier. Formal analysis of firewalls using tree automata techniques. 2010 Grande Region Security and Reliability Day, Mar 2010, Saarbrücken, Germany. ⟨inria-00460462v2⟩
150 Consultations
229 Téléchargements

Partager

Gmail Facebook X LinkedIn More