首页 | 本学科首页   官方微博 | 高级检索  
     


Improving cloud network security using the Tree-Rule firewall
Affiliation:1. Department of Informatics, University of Piraeus, Greece;2. Department of Informatics, Technological Educational Institution of Athens, Greece;3. Department of Cultural Technology and Communication, University of the Aegean, Greece;1. University Psychiatric Centre KU Leuven, campus Kortenberg, KULeuven Department of Neurosciences, Belgium;2. KU Leuven Department of Rehabilitation Sciences, Leuven, Belgium
Abstract:This study proposes a new model of firewall called the ‘Tree-Rule Firewall’, which offers various benefits and is applicable for large networks such as ‘cloud’ networks. The recently available firewalls (i.e., Listed-Rule firewalls) have their limitations in performing the tasks and are inapplicable for working on some networks with huge firewall rule sizes. The Listed-Rule firewall is mathematically tested in this paper to prove that the firewall potentially causes conflict rules and redundant rules and hence leads to problematic network security systems and slow functional speed. To overcome these problems, we show the design and development of Tree-Rule firewall that does not create conflict rules and redundant rules. In a Tree-Rule firewall, the rule positioning is based on a tree structure instead of traditional rule listing. To manage firewall rules, we implement a Tree-Rule firewall on the Linux platform and test it on a regular network and under a cloud environment respectively to show its performance. It is demonstrated that the Tree-Rule firewall offers better network security and functional speed than the Listed-Rule firewall. Compared to the Listed-Rule firewall, rules of the Tree-Rule firewall are easier to be created, especially on a large network such as a cloud network.
Keywords:Firewall  Tree-Rule firewall  Network security  Cloud security  Cloud computing
本文献已被 ScienceDirect 等数据库收录!
设为首页 | 免责声明 | 关于勤云 | 加入收藏

Copyright©北京勤云科技发展有限公司  京ICP备09084417号