Algorithm for Fast Detecting Firewall Rule Configuration Mistakes

WANG Weiping,CHEN Wenhui,ZHU Weiwei,CHEN Huaping
DOI: https://doi.org/10.3969/j.issn.1000-3428.2007.11.049
2007-01-01
Abstract:As enterprises’ network security barrier,firewalls play a very important role.Since enterprises configurate firewalls according to its need;the rule table will be included.However,problems may occur during configuration.On one hand,the administrator himself may make some mistakes during initial configuration.On the other hand,possibility of conflicts among different rules increases with rule numbers in the table growing.This paper analyzes possible mistakes in the configuration process.It introduces several familiar types of mistakes in configuration,puts forward the algorithm which can find mistakes.The paper improves the algorithm according to the characteristics of the firewall rule table,which increases efficiency of detecting configuration mistakes.
What problem does this paper attempt to address?