Ruxandra Trandafir, M. Cărăbaş, R. Rughinis, N. Tapus
{"title":"FirewallPK: Security tool for centralized Access Control List management","authors":"Ruxandra Trandafir, M. Cărăbaş, R. Rughinis, N. Tapus","doi":"10.1109/ROEDUNET-RENAM.2014.6955309","DOIUrl":null,"url":null,"abstract":"This paper aims to present a centralized Access Control List management application, named FirewallPK. Our solution offers a scalable implementation that automates network decisions when different potential security attacks are detected over a large network infrastructure. To this end, our application monitors real-time network traffic and installs Access Control Lists on the controlled routers. Moreover, it allows distributed policies configuration. The application was built using the Cisco One Platform Kit framework that is currently being standardized.","PeriodicalId":340048,"journal":{"name":"2014 RoEduNet Conference 13th Edition: Networking in Education and Research Joint Event RENAM 8th Conference","volume":"42 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2014-08-25","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"4","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"2014 RoEduNet Conference 13th Edition: Networking in Education and Research Joint Event RENAM 8th Conference","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ROEDUNET-RENAM.2014.6955309","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 4
Abstract
This paper aims to present a centralized Access Control List management application, named FirewallPK. Our solution offers a scalable implementation that automates network decisions when different potential security attacks are detected over a large network infrastructure. To this end, our application monitors real-time network traffic and installs Access Control Lists on the controlled routers. Moreover, it allows distributed policies configuration. The application was built using the Cisco One Platform Kit framework that is currently being standardized.
本文的目的是提出一个集中的访问控制列表管理应用程序,命名为FirewallPK。我们的解决方案提供了一个可扩展的实现,当在大型网络基础设施上检测到不同的潜在安全攻击时,可以自动做出网络决策。为此,我们的应用程序监控实时网络流量,并在受控制的路由器上安装访问控制列表。此外,它还支持分布式策略配置。该应用程序是使用目前正在标准化的Cisco One Platform Kit框架构建的。