Detail publikačního výsledku

A Formal Model for Network-wide Security Analysis

MATOUŠEK, P.; RYŠAVÝ, O.; RÁB, J.; ŠVÉDA, M.

Originální název

A Formal Model for Network-wide Security Analysis

Anglický název

A Formal Model for Network-wide Security Analysis

Druh

Stať ve sborníku mimo WoS a Scopus

Originální abstrakt

Network designers perform challenging tasks with so many configuration options that it is often hard or even impossible for a human to predict all potentially dangerous situations. In this paper, we introduce a formal method approach for verification of security constraints on networks with dynamic routing protocols in use. A unifying model based on packet-filters is employed for
modelling of network behaviour. Over this graph model augmented with filtering rules over edges verification of  reachability properties can be made. In our approach we also consider topology changes caused by dynamic routing protocols.

Anglický abstrakt

Network designers perform challenging tasks with so many configuration options that it is often hard or even impossible for a human to predict all potentially dangerous situations. In this paper, we introduce a formal method approach for verification of security constraints on networks with dynamic routing protocols in use. A unifying model based on packet-filters is employed for
modelling of network behaviour. Over this graph model augmented with filtering rules over edges verification of  reachability properties can be made. In our approach we also consider topology changes caused by dynamic routing protocols.

Klíčová slova

network, security, modelling, filtering rules, reachability analysis

Klíčová slova v angličtině

network, security, modelling, filtering rules, reachability analysis

Autoři

MATOUŠEK, P.; RYŠAVÝ, O.; RÁB, J.; ŠVÉDA, M.

Rok RIV

2012

Vydáno

17.03.2008

Nakladatel

University of Ulster

Místo

Belfast

ISBN

0-7695-3141-5

Kniha

Proceeding of the 15 IEEE International Symposium and Workshop on the Engineering of Computer-based Systems

Strany od

171

Strany do

181

Strany počet

11

URL

BibTex

@inproceedings{BUT27706,
  author="Petr {Matoušek} and Ondřej {Ryšavý} and Jaroslav {Ráb} and Miroslav {Švéda}",
  title="A Formal Model for Network-wide Security Analysis",
  booktitle="Proceeding of the 15 IEEE International Symposium and Workshop on the Engineering of Computer-based Systems",
  year="2008",
  pages="171--181",
  publisher="University of Ulster",
  address="Belfast",
  isbn="0-7695-3141-5",
  url="https://www.fit.vut.cz/research/publication/8554/"
}

Dokumenty