A Novel Firewalls ConFigure Fault and Its Repair Method

Penghui Su,Yan Gao,Ming Chen

2022 Tenth International Conference on Advanced Cloud and Big Data (CBD)(2022)

引用 1|浏览1
暂无评分
摘要
With the expansion of enterprise networks and data centers, multilayer firewalls are deployed in these systems. In view of the new network fault in the multi-firewall network, people can not explain its formation mechanism and there is no effective repair method. This paper analyzes the causes of the network fault and points out that the network fault is caused by the inconsistency between the application flow routing and the firewall security policy. Based on this, this paper proposes a network Fault Detection and repair (FDR) method in multi-firewall networks to quickly locate and repair the network faults. In order to verify the effectiveness of FDR method, we designed and implemented a prototype system based on network function virtualization. The experimental results show that the fault can be accurately reproduced in multi-firewall network. FDR method can not only find the inconsistency between security policy and routing accurately and efficiently, but also recover the network fault quickly.
更多
查看译文
关键词
multi-firewall network,network fault,security policy and routing consistent,NFV prototype system,detection and repair method
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要