Detail výsledku
A Formal Approach to Network Security Analysis
Ryšavý Ondřej, doc. Ing., Ph.D., UIFS (FIT)
Švéda Miroslav, prof. Ing., CSc., UIFS (FIT), UTKO (FEKT)
Ráb Jaroslav, Ing., FIT (FIT), UIFS (FIT)
Čejka Rudolf, Ing., CVT (FIT)
This paper deals with an approach to security analysis of TCP/IP-based computer networks. The method developed stems from a formal model of network topology with changing link states, and deploys bounded model checking of network security properties supported by SAT-based decision procedure. Its implementation consists of a set of tools that provide automatic analysis of router configurations, network topologies, and states with respect to checked properties. While the paper aims at supporting a real practice, its form strives to be exact enough to explain the principles of the method in detail.
network security analysis, bounded model checking, network modeling, SAT-based decision procedure
@misc{BUT192649,
author="Petr {Matoušek} and Ondřej {Ryšavý} and Miroslav {Švéda} and Jaroslav {Ráb} and Rudolf {Čejka}",
title="A Formal Approach to Network Security Analysis",
year="2008",
pages="20",
publisher="Faculty of Information Technology BUT",
address="Brno",
url="https://www.fit.vut.cz/research/publication/8572/"
}
Výzkum informačních technologií z hlediska bezpečnosti, MŠMT, Institucionální prostředky SR ČR (např. VZ, VC), MSM0021630528, zahájení: 2007-01-01, ukončení: 2013-12-31, řešení