loading...
A Formal Model for Network-Wide Security Analysis
March 31-April 04
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/ECBS.2008.1315th Annual IEEE International Confer ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Network designers perform challenging tasks with so many configuration options that it is often hard or even impossible for a human to predict all potentially dangerous situations. In this paper, we introduce a formal method approach for verification of security constraints on networks with dynamic routing protocols in use. A unifying model based on packet-filters is employed for modelling of network behaviour. Over this graph model augmented with filtering rules over edges verification of reachability properties can be made. In our approach we also consider topology changes caused by dynamic routing protocols.
Index Terms:
network security, netowrk design, dynamic routing protocols, formal verification, packet filters
Citation:
Petr Matou?ek, Jaroslav R?, Ondrej Ry?avy, Miroslav Sv?da, "A Formal Model for Network-Wide Security Analysis," ecbs, pp.171-181, 15th Annual IEEE International Conference and Workshop on the Engineering of Computer Based Systems (ecbs 2008), 2008
Usage of this product signifies your acceptance of the Terms of Use.