论文部分内容阅读
一个成功的网络安全系统需要具有针对网络上所有设备、所有安全策略的,全局性的安全配置分析工具;只有这样,才能避免安全策略之间相互的冲突和矛盾。本文提出了一种对Access List冲突进行全面分类的方法,包括单一设备上的冲突(内在冲突)和多个设备上的冲突(交互冲突)以及解决冲突的办法。
A successful cybersecurity system requires global security configuration analysis tools that target all devices and all security policies on the network; the only way to avoid conflicts and inconsistencies between security policies. This paper presents a comprehensive classification of Access List conflicts methods, including a single device conflict (internal conflict) and multiple devices on the conflict (conflict) and conflict resolution.