OATAO - Open Archive Toulouse Archive Ouverte Open Access Week

Spécification Method for Analyzing Fine Grained Network Security Mechanism Configurations

El Khoury, Hicham and Laborde, Romain and Barrère, François and Benzekri, Abdelmalek and Chamoun, Maroun Spécification Method for Analyzing Fine Grained Network Security Mechanism Configurations. (2013) In: 6th Symposium on Security Analytics and Automation 2013 (SafeConfig 2013), 14 October 2013 - 16 October 2013 (Washington, D.C., United States).

(Document in English)

PDF (Author's version) - Requires a PDF viewer such as GSview, Xpdf or Adobe Acrobat Reader

Official URL: http://dx.doi.org/10.1109/CNS.2013.6682764


Quick evolution, heterogeneity, interdependence between equipment, and many other factors induce high complexity to network security analysis. Although several approaches have proposed different analysis tools, achieving this task requires experienced and proficient security administrators who can handle all these parameters. The challenge is not to propose a temporary solution but to offer a building block for this large domain, though no approach can be optimal for all tasks. In previous papers, we have proposed a novel formal model of equipment configuration built on data flow attribute-based approach to detect network security conflicts. In this paper, we extend the previous proposed model in order to make it more generic by proving it can handle microscopic analysis. We define a formal analysis method for network security mechanisms. Therefore, we specify our approach in Colored Petri Networks to automate the conflicts analysis and test it on a fine-grained firewall scenario.

Item Type:Conference or Workshop Item (Paper)
HAL Id:hal-04083309
Audience (conference):International conference proceedings
Uncontrolled Keywords:
Institution:French research institutions > Centre National de la Recherche Scientifique - CNRS (FRANCE)
Université de Toulouse > Institut National Polytechnique de Toulouse - Toulouse INP (FRANCE)
Université de Toulouse > Université Toulouse III - Paul Sabatier - UT3 (FRANCE)
Université de Toulouse > Université Toulouse - Jean Jaurès - UT2J (FRANCE)
Université de Toulouse > Université Toulouse 1 Capitole - UT1 (FRANCE)
Other partners > Université Saint-Joseph de Beyrouth - USJ (LEBANON)
Laboratory name:
Deposited On:24 Apr 2015 11:27

Repository Staff Only: item control page