A Firewall Policy Anomaly Detection Framework for Reliable Network Security

dc.authorid0000-0003-2707-6075en_US
dc.contributor.authorTogay, Cengiz
dc.contributor.authorKaşif, Ahmet
dc.contributor.authorCatal, Cagatay
dc.contributor.authorTekinerdogan, Bedir
dc.date.accessioned2022-08-05T13:28:42Z
dc.date.available2022-08-05T13:28:42Z
dc.date.issued2021en_US
dc.departmentBTÜ, Mühendislik ve Doğa Bilimleri Fakültesi, Bilgisayar Mühendisliği Bölümüen_US
dc.description.abstractOne of the key challenges in computer networks is network security. For securing the network, various solutions have been proposed, including network security protocols and firewalls. In the case of so-called packet-filtering firewalls, policy rules are implemented to monitor changes to the network and preserve the required security level. Due to the dramatic increase of devices, however, and herewith the rapid increase of the size of the policy rules, firewall policy anomalies occur more frequently. This requires careful implementation of the policy rules to ensure cost-efficient solutions for anomaly detection to support network security. In this study, we present an anomaly detection framework for detecting intrafirewall policy anomaly rules. The framework supports the simulation of packets through the firewall ruleset for validating and enhancing the security level of the network. The framework is validated using four different types of firewall policy anomalies. Experimental results demonstrate that the framework is effective and efficient in detecting firewall policy anomalies.en_US
dc.identifier.doi10.1109/TR.2021.3089511en_US
dc.identifier.endpage347en_US
dc.identifier.issn0018-9529
dc.identifier.issue1en_US
dc.identifier.scopusqualityQ1en_US
dc.identifier.startpage339en_US
dc.identifier.urihttps://hdl.handle.net/20.500.12885/2030
dc.identifier.volume71en_US
dc.identifier.wosqualityN/Aen_US
dc.indekslendigikaynakWeb of Scienceen_US
dc.institutionauthorKaşif, Ahmet
dc.language.isoenen_US
dc.publisherIEEen_US
dc.relation.ispartofIEEE TRANSACTIONS ON RELIABILITYen_US
dc.relation.publicationcategoryMakale - Uluslararası Hakemli Dergi - Kurum Öğretim Elemanıen_US
dc.rightsinfo:eu-repo/semantics/closedAccessen_US
dc.subjectAnomaly detectionen_US
dc.subjectSecurityen_US
dc.subjectIP networksen_US
dc.subjectFirewalls (computing)en_US
dc.subjectShadow mappingen_US
dc.subjectRedundancyen_US
dc.subjectCorrelationen_US
dc.subjectAnomaly detectionen_US
dc.subjectfirewall policyen_US
dc.subjectlogic programmingen_US
dc.subjectnetwork securityen_US
dc.subjectpacket filteringen_US
dc.titleA Firewall Policy Anomaly Detection Framework for Reliable Network Securityen_US
dc.typeArticleen_US

Dosyalar

Lisans paketi
Listeleniyor 1 - 1 / 1
Küçük Resim Yok
İsim:
license.txt
Boyut:
1.44 KB
Biçim:
Item-specific license agreed upon to submission
Açıklama: