Publication Details
SECURITY ANALYSIS OF TCP/IP NETWORKS -- An Approach to Automatic Analysis of Network Security Properties
ŠVÉDA, M.; RYŠAVÝ, O.; MATOUŠEK, P.; RÁB, J.; ČEJKA, R. SECURITY ANALYSIS OF TCP/IP NETWORKS -- An Approach to Automatic Analysis of Network Security Properties. Proceedings of the International Conference on Data Communication Networking ICETE-DCNET 2010. Athens: Institute for Systems and Technologies of Information, Control and Communication, 2010. p. 5-11. ISBN: 978-989-8425-25-6.
Czech title
Bezpečnostní analýza TCP/IP sítí -- Přístup k automatické analýze bezpečnostních vlastností sítí
Type
conference paper
Language
English
Authors
Švéda Miroslav, prof. Ing., CSc.
(UTKO)
Ryšavý Ondřej, doc. Ing., Ph.D. (DIFS)
Matoušek Petr, doc. Ing., Ph.D., M.A. (DIFS)
Ráb Jaroslav, Ing.
Čejka Rudolf, Ing. (CVT)
Ryšavý Ondřej, doc. Ing., Ph.D. (DIFS)
Matoušek Petr, doc. Ing., Ph.D., M.A. (DIFS)
Ráb Jaroslav, Ing.
Čejka Rudolf, Ing. (CVT)
Keywords
Intranet topology, dynamic routing, state-based reachability, security, bounded model checking, SAT
Abstract
This paper deals with an approach to security analysis of TCP/IP-based computer networks. The method developed stems from a formal model of network topology with changing link states, and deploys bounded model checking of network security properties supported by SAT-based decision procedure. Its implementation consists of a set of tools that provide automatic analysis of router configurations, network topologies, and states with respect to checked properties. While the paper aims at supporting a real practice, its form strives to be exact enough to explain the principles of the method in more detail.
Published
2010
Pages
5–11
Proceedings
Proceedings of the International Conference on Data Communication Networking ICETE-DCNET 2010
ISBN
978-989-8425-25-6
Publisher
Institute for Systems and Technologies of Information, Control and Communication
Place
Athens
BibTeX
@inproceedings{BUT34845,
author="Miroslav {Švéda} and Ondřej {Ryšavý} and Petr {Matoušek} and Jaroslav {Ráb} and Rudolf {Čejka}",
title="SECURITY ANALYSIS OF TCP/IP NETWORKS -- An Approach to Automatic Analysis of Network Security Properties",
booktitle="Proceedings of the International Conference on Data Communication Networking ICETE-DCNET 2010",
year="2010",
pages="5--11",
publisher="Institute for Systems and Technologies of Information, Control and Communication",
address="Athens",
isbn="978-989-8425-25-6"
}