Abstracto

Firewall Policy Anomaly Detection and Resolution Using Rule Based Approach

B.Srikanth , Smt.K.Venkata Ramana

Security concerns are becoming increasingly critical innetworked systems. Firewalls provide important defense fornetwork security. Computer firewalls are widely used for security policy enforcement and access control. Current firewalls use various processing models and are configured using their own policy description languages. However, misconfigurations in firewallsare very common and significantly weaken the desired security. In this paper, a novel methodology called rule-based segmentation technique is proposed to identify policy anomalies, which is articulated with a grid-based representation. It derives effective solutions to avoid anomalies by providing anintuitive cognitive sense about policy anomaly. The experiments shown that, the proposed approachcan efficiently discover and resolve anomalies in firewall policies.