Cassio Diztel Kropiwiec, Guy Pujolle, Edgard Jamhour, Mauro Sérgio Pereira Fonseca, Fabrício Enembreck.
This paper presents a framework for high-level security policy representation for firewall configuration, independent of topology, devices and firewall capabilities, based on declarative programming. The developed algorithm indicates the rules that must be applied to each firewall, modifying the rules according to the firewall capabilities if necessary. The algorithm includes a process that evaluates the generated rules to certify that they don't violate the security. A case study is presented to demonstrate the effectiveness of the framework.
http://www.lbd.dcc.ufmg.br:8080/colecoes/sbrc/2006/st7_3.pdf
Caso o link acima esteja inválido, faça uma busca pelo texto completo na Web: Buscar na Web