High Impact Factor : 4.396 icon | Submit Manuscript Online icon |

A Novel Management Framework for Policy Anomaly in Firewall

Author(s):

Ms. S. Selvakanmani , Velammal Institute of Technology, Velammal Gardens, Chennai, Tamil Nadu.

Keywords:

FAME, policy anomaly, firewall, segment.

Abstract

The advent of emerging technologies such as Web services, service-oriented architecture, and cloud computing has enabled us to perform business services more efficiently and effectively. However, we still suffer from unintended security leakages by unauthorized actions in business services. Firewalls are the most widely deployed security mechanism to ensure the security of private networks in most businesses and institutions. The effectiveness of security protection provided by a firewall mainly depends on the quality of policy configured in the firewall. Unfortunately, designing and managing firewall policies are often error-prone due to the complex nature of firewall configurations as well as the lack of systematic analysis mechanisms and tools. In this paper, we represent an innovative policy anomaly management framework for firewalls, adopting a rule-based segmentation technique to identify policy anomalies and derive effective anomaly resolutions. We also discuss a proof-of-concept implementation of a visualization-based firewall policy analysis tool called Firewall Anomaly Management Environment (FAME). In addition, we demonstrate how efficiently our approach can discover and resolve anomalies in firewall policies through rigorous experiments using Automatic rule generation technique.

Other Details

Paper ID: IJSRDV1I9005
Published in: Volume : 1, Issue : 9
Publication Date: 01/12/2013
Page(s): 1710-1715

Article Preview

Download Article