To read this content please select one of the options below:

Managing semantic‐aware policies in a distributed firewall scenario

Gregorio Martínez Pérez (Departamento de Ingeniería de la Información y las Comunicaciones, University of Murcia, Murcia, Spain)
Félix J. García Clemente (Departamento de Ingeniería de la Información y las Comunicaciones, University of Murcia, Murcia, Spain)
Antonio F. Gómez Skarmeta (Departamento de Ingeniería de la Información y las Comunicaciones, University of Murcia, Murcia, Spain)

Internet Research

ISSN: 1066-2243

Article publication date: 21 August 2007

894

Abstract

Purpose

The purpose of the paper is to provide a two‐tier framework for managing semantic‐aware distributed firewall policies to be applied to the devices existing in one administrative domain.

Design/methodology/approach

Special attention is paid to the CIM‐based information model defined as the ontology to be used in this framework and the AI‐based reasoning mechanisms and components used to perform the conflict discovery tasks over the distributed firewall policies.

Findings

Mechanisms presented allow the solving some of the current issues of the network‐centric security model being used in the Internet. The two‐tier framework designed provides semantic‐aware mechanisms to perform conflict detection and automatic enforcement of policy rules in the distributed firewall scenario. This framework is based on the use of a standard information model and a semantic‐aware policy language to formally define (and then process) firewall policies.

Research limitations/implications

Ongoing work is focused on identifying all kind of conflicts and anomalies that may exist in firewall systems; in parallel to this task a semi‐automatic resolver of conflicting policies is currently under design.

Practical implications

Network and security administrators can specify firewall policies and validate them to find syntactic and semantic errors (i.e. policy conflicts). A framework for automated validation and distribution of policies at different levels is included. This ensures that firewall policies produce the desired effects, facilitating the creation and maintenance of firewall rules in one administrative domain.

Originality/value

A practical and novel two‐tier system that provides detection of conflicts in rules existing in a distributed firewall scenario and the automatic and secure deployment of these rules. A packet‐filtering model, which is simple and powerful enough for the conflict discovery and rule analysis processes, has been proposed. Moreover, ontology and rule reasoning are being proposed as techniques for the conflict detection problem in this particular scenario.

Keywords

Citation

Martínez Pérez, G., García Clemente, F.J. and Gómez Skarmeta, A.F. (2007), "Managing semantic‐aware policies in a distributed firewall scenario", Internet Research, Vol. 17 No. 4, pp. 362-377. https://doi.org/10.1108/10662240710828049

Publisher

:

Emerald Group Publishing Limited

Copyright © 2007, Emerald Group Publishing Limited

Related articles