10
views
0
recommends
+1 Recommend
0 collections
    0
    shares
      • Record: found
      • Abstract: found
      • Article: found
      Is Open Access

      Algorithms for Analysing Firewall and Router Access Lists

      Preprint

      Read this article at

      Bookmark
          There is no author summary for this article yet. Authors can add summaries to their articles on ScienceOpen to make them more accessible to a non-specialist audience.

          Abstract

          Network firewalls and routers use a rule database to decide which packets will be allowed from one network onto another. By filtering packets the firewalls and routers can improve security and performance. However, as the size of the rule list increases, it becomes difficult to maintain and validate the rules, and lookup latency may increase significantly. Ordered binary decision diagrams (BDDs) - a compact method of representing and manipulating boolean expressions - are a potential method of representing the rules. This paper presents a new algorithm for representing such lists as a BDD and then shows how the resulting boolean expression can be used to analyse rule sets.

          Related collections

          Author and article information

          Journal
          09 August 2000
          Article
          cs/0008006
          6b332aab-731b-4d4a-8824-3ff8dab37bfc
          History
          Custom metadata
          TR-Wits-CS-1999-5
          12 pages; revised and shortened version appeared in Workshop on Dependable IP Systems and Platforms, In Proc ICDSN, June 2000
          cs.NI

          Comments

          Comment on this article