Complete Redundancy Detection in Firewalls

@inproceedings{Liu2005CompleteRD,
  title={Complete Redundancy Detection in Firewalls},
  author={Alex X. Liu and Mohamed G. Gouda},
  booktitle={DBSec},
  year={2005}
}
Firewalls are safety-critical systems that secure most private networks. The function of a firewall is to examine each incoming and outgoing packet and decide whether to accept or to discard the packet. This decision is made according to a sequence of rules, where some rules may be redundant. Redundant rules significantly degrade the performance of firewalls. Previous work detects only two special types of redundant rules. In this paper, we solve the problem of how to detect all redundant rules… CONTINUE READING
Highly Cited
This paper has 90 citations. REVIEW CITATIONS
66 Citations
16 References
Similar Papers

Citations

Publications citing this paper.
Showing 1-10 of 66 extracted citations

90 Citations

051015'07'10'13'16
Citations per Year
Semantic Scholar estimates that this publication has 90 citations based on the available data.

See our FAQ for additional information.

References

Publications referenced by this paper.
Showing 1-10 of 16 references

Algorithms for Routing Lookups and Packet Classification

  • P. Gupta
  • PhD thesis, Stanford University,
  • 2000
Highly Influential
5 Excerpts

Similar Papers

Loading similar papers…