已收录 273176 条政策
 政策提纲
  • 暂无提纲
Enhancements to the Vantage Firewall Analyzer
[摘要] The Vantage firewall analysis toolkit simplifies the complexity of managing firewall access control rule sets. Firewall rule sets typically become increasingly unwieldy over time. It is common for firewalls to have hundreds, or even thousands, of rules. As a result, administrators do not know how rules interact with each other. In a previous technical report [BHR], we presented our tool to analyze Checkpoint firewalls. Given two rule sets, the tool produces a comprehensive list of the traffic that one rule set will let through but not the other one. As such, we can use it to compare the existing rule set with a second rule set containing the proposed changes. The administrator can visually check if the difference in traffic patterns corresponds to what he or she intended in proposing the changes. This report presents improvements and extensions to the toolkit. In particular, we present faster underlying algorithms and improved software architecture. We also extend the toolkit to analyze HP_UX IPFilter rule sets. 19 PagesExternal Posting Date: June 7, 2008 [Fulltext].Approved for External PublicationInternal Posting Date: June 7, 2008 [Fulltext]
[发布日期]  [发布机构] HP Development Company
[效力级别]  [学科分类] 计算机科学(综合)
[关键词] firewall;rule set;overlap;analysis;rectangle intersection [时效性] 
   浏览次数:26      统一登录查看全文      激活码登录查看全文