Provably Secure Networks: Methodology and Toolset for Configuration Management

28 Aug 2017  ·  Diekmann Cornelius ·

Network administration is an inherently complex task, in particular with regard to security. Using the Isabelle interactive proof assistant, we develop two automated, formally verified tools which help uncovering and preventing bugs in network-level access control configurations. Our first tool guides the process of designing networks from scratch. Our second tool facilitates the analysis of existing iptables configurations. Combined, the two form a powerful toolset.

PDF Abstract

Categories


Networking and Internet Architecture Cryptography and Security

Datasets


  Add Datasets introduced or used in this paper