RUS  ENG
Full version
JOURNALS // Informatics and Automation // Archive

Tr. SPIIRAN, 2012 Issue 22, Pages 113–138 (Mi trspy522)

This article is cited in 1 paper

Verification of security policy filtering rules with temporal parameters by Model Checking

O. V. Polubelova, I. V. Kotenko

St. Petersburg Institute for Informatics and Automation of RAS

Abstract: The paper outlines an approach to verification of filtering rules of firewalls. The approach is intended for detection and resolution of filtering anomalies in the specification of the security policy of computer networks. It is based on Model Checking technique. The paper proposes the models of computer networks, the models of firewalls and filtering anomalies, as well as the algorithm of detection of such anomalies. The main peculiarities of the approach consist in using Model Checking exactly to detect the anomalies of filtering rules and in ability to specify temporal parameters in filtering rules.

Keywords: network security, verification, model checking, anomalies of filtering rules.

UDC: 004.056

Received: 13.06.2012



© Steklov Math. Inst. of RAS, 2024