发明名称 SYSTEM AND METHOD FOR DETERMINING FIREWALL EQUIVALENCE, UNION, INTERSECTION AND DIFFERENCE
摘要 Aspects of the invention pertain to integrated compliance analysis of multiple firewalls and access control lists for network segregation and partitioning. Access control lists may have many individual rules that indicate whether information can be passed between certain devices in a computer network. The access control lists in different firewalls in different network segments within a given network may overlap or have inconsistent rules. Aspects of the invention generate differences between firewalls, analyze equivalency of firewalls, generate the intersection (if any) between a pair of firewalls, and generate the union (if any) between firewalls. Such information provides an integrated analysis of multiple interrelated firewalls, including inbound and outbound access control lists for such firewalls, and may be used to manage firewall operation within the network to ensure consistent operation and maintain network security. It also addresses a wide range of security questions that arise when dealing with multiple firewalls.
申请公布号 US2011283348(A1) 申请公布日期 2011.11.17
申请号 US20100779069 申请日期 2010.05.13
申请人 LING YIBEI;NAIDU ADITYA;TALPADE RAJESH;TELCORDIA TECHNOLOGIES, INC. 发明人 LING YIBEI;NAIDU ADITYA;TALPADE RAJESH
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址