Publication:
A firewall policy anomaly detection framework for reliable network security

dc.contributor.authorKaşif, Ahmet
dc.contributor.authorÇatal, Çağatay
dc.contributor.authorTekinerdoğan, Bedir
dc.contributor.buuauthorTogay, Cengiz
dc.contributor.departmentMühendislik Fakültesi
dc.contributor.departmentBilgisayar Mühendisliği Bölümü
dc.contributor.researcheridAAG-9038-2020
dc.contributor.scopusid15065979500
dc.date.accessioned2024-01-30T07:39:47Z
dc.date.available2024-01-30T07:39:47Z
dc.date.issued2021-06-11
dc.description.abstractOne of the key challenges in computer networks is network security. For securing the network, various solutions have been proposed, including network security protocols and firewalls. In the case of so-called packet-filtering firewalls, policy rules are implemented to monitor changes to the network and preserve the required security level. Due to the dramatic increase of devices, however, and herewith the rapid increase of the size of the policy rules, firewall policy anomalies occur more frequently. This requires careful implementation of the policy rules to ensure cost-efficient solutions for anomaly detection to support network security. In this study, we present an anomaly detection framework for detecting intrafirewall policy anomaly rules. The framework supports the simulation of packets through the firewall ruleset for validating and enhancing the security level of the network. The framework is validated using four different types of firewall policy anomalies. Experimental results demonstrate that the framework is effective and efficient in detecting firewall policy anomalies.
dc.identifier.citationTogay, C. vd. (2022). "A firewall policy anomaly detection framework for reliable network security". IEEE Transactions on Reliability, 71(1), 339-347.
dc.identifier.doihttps://doi.org/10.1109/TR.2021.3089511
dc.identifier.eissn1558-1721
dc.identifier.endpage347
dc.identifier.issn0018-9529
dc.identifier.issue1
dc.identifier.scopus2-s2.0-85112707923
dc.identifier.startpage339
dc.identifier.urihttps://ieeexplore.ieee.org/document/9478072
dc.identifier.urihttps://hdl.handle.net/11452/39378
dc.identifier.volume71
dc.identifier.wos000733755300001
dc.indexed.wosSCIE
dc.language.isoen
dc.publisherIEEE
dc.relation.collaborationYurt içi
dc.relation.collaborationYurt dışı
dc.relation.journalIEEE Transactions on Reliability
dc.relation.publicationcategoryMakale - Uluslararası Hakemli Dergi
dc.rightsinfo:eu-repo/semantics/closedAccess
dc.subjectAnomaly detection
dc.subjectComputer system firewalls
dc.subjectLogic programming
dc.subjectNetwork protocols
dc.subjectPacket networks
dc.subjectAnomaly detection frameworks
dc.subjectFirewall policies
dc.subjectLogic-programming
dc.subjectNetworks security
dc.subjectPacket filtering
dc.subjectPolicy rules
dc.subjectReliable networks
dc.subjectSecurity
dc.subjectSecurity level
dc.subjectNetwork security
dc.subjectIp networks
dc.subjectFirewalls (computing)
dc.subjectShadow mapping
dc.subjectRedundancy
dc.subjectCorrelation
dc.subjectClassification
dc.subjectComputer science
dc.subjectEngineering
dc.subjectAnomaly detection
dc.subjectComputer system firewalls
dc.subjectLogic programming
dc.subjectNetwork protocols
dc.subjectPacket networks
dc.subjectAnomaly detection
dc.subjectAnomaly detection frameworks
dc.subjectFirewall policies
dc.subjectLogic-programming
dc.subjectNetworks security
dc.subjectPacket filtering
dc.subjectReliable networks
dc.subjectNetwork security
dc.subject.scopusFirewall; Network Security; Access Control
dc.subject.wosComputer science, hardware & architecture
dc.subject.wosComputer science, software engineering
dc.subject.wosEngineering, electrical & electronic
dc.titleA firewall policy anomaly detection framework for reliable network security
dc.typeArticle
dc.wos.quartileQ1
dspace.entity.typePublication
local.contributor.departmentMühendislik Fakültesi/Bilgisayar Mühendisliği Bölümü
local.indexed.atWOS
local.indexed.atScopus

Files

License bundle

Now showing 1 - 1 of 1
Placeholder
Name:
license.txt
Size:
1.71 KB
Format:
Item-specific license agreed upon to submission
Description: