Towards standardising firewall reporting

dc.contributor.authorRanathunga, D.
dc.contributor.authorRoughan, M.
dc.contributor.authorKernick, P.
dc.contributor.authorFalkner, N.
dc.contributor.conference1st Workshop on Cybersecurity of Industrial Control Systems (CyberICS), 1st Workshop on the Security of Cyber-Physical Systems (WOS-CPS) (21 Sep 2015 - 22 Sep 2015 : Vienna, Austria)
dc.contributor.editorBecue, A.
dc.contributor.editorCuppensBoulahia, N.
dc.contributor.editorCuppens, F.
dc.contributor.editorKatsikas, S.
dc.contributor.editorLambrinoudakis, C.
dc.date.issued2016
dc.descriptionLNCS, volume 9588
dc.description.abstractRubin and Greer stated that “The single most important factor of your firewall’s security is how you configure it.” [17]. However, firewall configuration is known to be difficult to get right. In particular domains, such as SCADA networks, while there are best practice standards that help, an overlooked component is the specification of firewall reporting policies. Our research tackles this question from first principles: we ask what are the uses of firewall reports, and we allow these to guide how reporting should be performed. We approach the problem by formalising the notion of scope and granularity of a report across several dimensions: time, network elements, policies, etc.
dc.description.statementofresponsibilityDinesha Ranathunga, Matthew Roughan, Phil Kernick, and Nick Falkner
dc.identifier.citationLecture Notes in Artificial Intelligence, 2016 / Becue, A., CuppensBoulahia, N., Cuppens, F., Katsikas, S., Lambrinoudakis, C. (ed./s), vol.9588, pp.127-143
dc.identifier.doi10.1007/978-3-319-40385-4_9
dc.identifier.isbn9783319403847
dc.identifier.issn0302-9743
dc.identifier.issn1611-3349
dc.identifier.orcidRanathunga, D. [0000-0002-8665-371X]
dc.identifier.orcidRoughan, M. [0000-0002-7882-7329]
dc.identifier.orcidFalkner, N. [0000-0001-7892-6813]
dc.identifier.urihttp://hdl.handle.net/2440/108385
dc.language.isoen
dc.publisherSpringer
dc.relation.ispartofseriesLecture Notes in Computer Science
dc.rights© Springer International Publishing Switzerland 2016
dc.source.urihttps://doi.org/10.1007/978-3-319-40385-4_9
dc.subjectSCADA security; Firewall autoconfiguration; Zone- Conduit model; Firewall reporting; Report granularity; Granularity dimension
dc.titleTowards standardising firewall reporting
dc.typeConference paper
pubs.publication-statusPublished

Files

Original bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
RA_hdl_108385.pdf
Size:
690.5 KB
Format:
Adobe Portable Document Format
Description:
Restricted Access