loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Fifth IEEE International Workshop on Policies for Distributed Systems and Networks (POLICY'04)
Protocol Decode Based Stateful Firewall Policy Definition Language
Yorktown Heights, New York
June 07-June 09
ISBN: 0-7695-2141-X
Pankaj N. Parmar, Intel Corporation
Priya Rajagopal, Intel Corporation
Ravi Sahita, Intel Corporation
The policies for thwarting attacks on systems vary greatly in complexity, ranging from simple static firewall rules to complex stateful protocol state machine analysis. As intrusion detection systems are getting integrated into firewall solutions, there is a need for a language that can define both firewall policies and system intrusion behavior and exhibit inter-operable traits. This paper presents an XML based, self-documenting State-Aware Firewall Language (SAFire) that is designed to express the various kinds of firewall and intrusion behavior.
Citation:
Pankaj N. Parmar, Priya Rajagopal, Ravi Sahita, "Protocol Decode Based Stateful Firewall Policy Definition Language," policy, pp.201, Fifth IEEE International Workshop on Policies for Distributed Systems and Networks (POLICY'04), 2004
Usage of this product signifies your acceptance of the Terms of Use.