Publication result detail

An Approach for Automated Network-Wide Security Analysis

ŠVÉDA, M.; RYŠAVÝ, O.; MATOUŠEK, P.; RÁB, J.

Original Title

An Approach for Automated Network-Wide Security Analysis

English Title

An Approach for Automated Network-Wide Security Analysis

Type

Paper in proceedings outside WoS and Scopus

Original Abstract

This paper deals with an approach to security analysis of TCP/IP-based computer networks. The method developed stems from a formal model of network topology with changing link states, and deploys bounded model checking of network security properties supported by SAT-based decision procedure. Its implementation should consist of a set of tools that can provide automatic analysis of router configurations, network topologies, and states with respect to checked properties. While this project aims at supporting a real practice, it stems from the previous, more theoretical research designing the method in detail including its formal background.

English abstract

This paper deals with an approach to security analysis of TCP/IP-based computer networks. The method developed stems from a formal model of network topology with changing link states, and deploys bounded model checking of network security properties supported by SAT-based decision procedure. Its implementation should consist of a set of tools that can provide automatic analysis of router configurations, network topologies, and states with respect to checked properties. While this project aims at supporting a real practice, it stems from the previous, more theoretical research designing the method in detail including its formal background.

Keywords

TCP/IP networks; changing network topology; network security analysis; bounded model-checking; SAT-based decision procedure

Key words in English

TCP/IP networks; changing network topology; network security analysis; bounded model-checking; SAT-based decision procedure

Authors

ŠVÉDA, M.; RYŠAVÝ, O.; MATOUŠEK, P.; RÁB, J.

RIV year

2012

Released

31.03.2010

Publisher

IEEE Computer Society

Location

Les Menuires

ISBN

978-0-7695-3979-9

Book

Proceedings of the Ninth International Conference on Networks ICN 2010

Pages from

294

Pages to

299

Pages count

6

URL

BibTex

@inproceedings{BUT34733,
  author="Miroslav {Švéda} and Ondřej {Ryšavý} and Petr {Matoušek} and Jaroslav {Ráb}",
  title="An Approach for Automated Network-Wide Security Analysis",
  booktitle="Proceedings of the Ninth International Conference on Networks  ICN 2010",
  year="2010",
  pages="294--299",
  publisher="IEEE Computer Society",
  address="Les Menuires",
  isbn="978-0-7695-3979-9",
  url="https://www.fit.vut.cz/research/publication/9191/"
}

Documents