Result Details

SECURITY ANALYSIS OF TCP/IP NETWORKS -- An Approach to Automatic Analysis of Network Security Properties

ŠVÉDA, M.; RYŠAVÝ, O.; MATOUŠEK, P.; RÁB, J.; ČEJKA, R. SECURITY ANALYSIS OF TCP/IP NETWORKS -- An Approach to Automatic Analysis of Network Security Properties. Proceedings of the International Conference on Data Communication Networking ICETE-DCNET 2010. Athens: Institute for Systems and Technologies of Information, Control and Communication, 2010. p. 5-11. ISBN: 978-989-8425-25-6.
Type
conference paper
Language
English
Authors
Švéda Miroslav, prof. Ing., CSc., DIFS (FIT), UTKO (FEEC)
Ryšavý Ondřej, doc. Ing., Ph.D., DIFS (FIT)
Matoušek Petr, doc. Ing., Ph.D., M.A., DIFS (FIT)
Ráb Jaroslav, Ing., DIFS (FIT)
Čejka Rudolf, Ing., CVT (FIT)
Abstract

This paper deals with an approach to security analysis of TCP/IP-based computer networks. The method developed stems from a formal model of network topology with changing link states, and deploys bounded model checking of network security properties supported by SAT-based decision procedure. Its implementation consists of a set of tools that provide automatic analysis of router configurations, network topologies, and states with respect to checked properties. While the paper aims at supporting a real practice, its form strives to be exact enough to explain the principles of the method in more detail.

Keywords

Intranet topology, dynamic routing, state-based reachability, security, bounded model checking, SAT

Published
2010
Pages
5–11
Proceedings
Proceedings of the International Conference on Data Communication Networking ICETE-DCNET 2010
Conference
International Conference on Data Communication Networking + International Conference on Software and Data Technologies 2010
ISBN
978-989-8425-25-6
Publisher
Institute for Systems and Technologies of Information, Control and Communication
Place
Athens
BibTeX
@inproceedings{BUT34845,
  author="Miroslav {Švéda} and Ondřej {Ryšavý} and Petr {Matoušek} and Jaroslav {Ráb} and Rudolf {Čejka}",
  title="SECURITY ANALYSIS OF TCP/IP NETWORKS -- An Approach to Automatic Analysis of Network Security Properties",
  booktitle="Proceedings of the International Conference on Data Communication Networking ICETE-DCNET 2010",
  year="2010",
  pages="5--11",
  publisher="Institute for Systems and Technologies of Information, Control and Communication",
  address="Athens",
  isbn="978-989-8425-25-6"
}
Projects
Automated attack processing, MPO, TIP, FR-TI1/037, start: 2009-10-01, end: 2013-09-30, completed
Safety and security of networked embedded system applications, GACR, Standardní projekty, GA102/08/1429, start: 2008-01-01, end: 2010-12-31, completed
Secured, reliable and adaptive computer systems, BUT, Vnitřní projekty VUT, FIT-S-10-1, start: 2010-03-01, end: 2010-12-31, completed
Security-Oriented Research in Information Technology, MŠMT, Institucionální prostředky SR ČR (např. VZ, VC), MSM0021630528, start: 2007-01-01, end: 2013-12-31, running
Research groups
Departments
Back to top