DYNAMIC FIREWALL DECOMPOSITN AND COMPOSITION IN THE CLOUD

  • Unique Paper ID: 151069
  • Volume: 7
  • Issue: 11
  • PageNo: 540-548
  • Abstract:
  • Firewalls filter malicious traffic and provide the network with a satisfying level of security. Thus, their performance is critical for the whole network. Rule-based firewalls are the most widely deployed among traditional ones. However, as the size of the rule list of a firewall increases, lookup latency increases significantly. One main solution to enhance the performance of a firewall is to reorder rules based on traffic characteristics to obtain the minimum number of packet matches. The optimal firewall rule ordering problem (ORO) is NP-Complete. Therefore, setting up a centralized firewall for a whole network is infeasible. Our proposed solution dynamically scales in and out firewalls across multiple administrative domains for more efficient rules optimization, filtering, and better attack response. The proposed solution, in this paper, outsources the firewall functions into micro firewalls, which are located in different places and have their configurations. Therefore, traffic is treated locally and in a distributed way. The experimental results show that our proposed solution is scalable regarding the organization's network requirements. Moreover, the central firewall is relaxed executing rules optimization algorithms in consecutive time intervals, inefficien

Cite This Article

  • ISSN: 2349-6002
  • Volume: 7
  • Issue: 11
  • PageNo: 540-548

DYNAMIC FIREWALL DECOMPOSITN AND COMPOSITION IN THE CLOUD

Related Articles