Publication | Closed Access
SAT-solving approaches to context-aware enterprise network security management
44
Citations
19
References
2009
Year
EngineeringInformation SecurityVerificationSecurity EvaluationSoftware AnalysisFormal VerificationSecurity ModellingSecure Network AccessSat-solving ApproachesBoolean SatisfiabilitySystems EngineeringNetwork SecuritySecurity TestingIntrusion ToleranceComputer ScienceData SecurityCryptographyLogical FrameworkFormal MethodsSecuritySecurity MeasurementUsability Requirements
Enterprise network security management is a complex task of balancing security and usability, with trade-offs often necessary between the two. Past work has provided ways to identify intricate attack paths due to misconfiguration and vulnerabilities in an enterprise system, but little has been done to address how to correct the security problems within the context of various other requirements such as usability, ease of access, and cost of countermeasures. This paper presents an approach based on Boolean satisfiability solving (SAT solving) that can reason about attacks, usability requirements, cost of actions, etc. in a unified, logical framework. Preliminary results show that the approach is both effective and efficient.
| Year | Citations | |
|---|---|---|
Page 1
Page 1