论文部分内容阅读
防火墙是业务系统的第一道防线,对保证内网安全起着关键作用,而防火墙策略配置粗粒度使得防火墙作用难以真正发挥。目前,人工策略审核费时费力,亟需一种自动化的策略审计手段。本文研究并实现了关于防火墙策略的自动化审计系统,该系统能有助于促进防火墙策略配置规范化,提升安全水平的同时提高工作效率,辅助管理员加固网络的第一道防线。
Firewalls are the first line of defense for business systems and play a key role in ensuring intranet security. Coarse granularity of firewall policy configuration makes it hard to actually play the role of a firewall. At present, the artificial strategy audit takes time and effort, and an automated strategy audit method is urgently needed. This paper studies and implements an automated auditing system on firewall policies that can help to standardize firewall policy configuration, improve security level and improve work efficiency at the same time, and assist administrators in strengthening the network’s first line of defense.