We gratefully acknowledge support from
the Simons Foundation and member institutions.
Full-text links:

Download:

Current browse context:

cs.NI

Change to browse by:

References & Citations

DBLP - CS Bibliography

Bookmark

(what is this?)
CiteULike logo BibSonomy logo Mendeley logo del.icio.us logo Digg logo Reddit logo

Computer Science > Networking and Internet Architecture

Title: Demonstrating topoS: Theorem-Prover-Based Synthesis of Secure Network Configurations

Abstract: In network management, when it comes to security breaches, human error constitutes a dominant factor. We present our tool topoS which automatically synthesizes low-level network configurations from high-level security goals. The automation and a feedback loop help to prevent human errors. Except for a last serialization step, topoS is formally verified with Isabelle/HOL, which prevents implementation errors. In a case study, we demonstrate topoS by example. For the first time, the complete transition from high-level security goals to both firewall and SDN configurations is presented.
Comments: In 2nd International Workshop on Management of SDN and NFV Systems, manSDN/NFV, Barcelona, Spain, November 2015
Subjects: Networking and Internet Architecture (cs.NI); Cryptography and Security (cs.CR); Software Engineering (cs.SE)
DOI: 10.1109/CNSM.2015.7367384
Cite as: arXiv:1604.00273 [cs.NI]
  (or arXiv:1604.00273v1 [cs.NI] for this version)

Submission history

From: Cornelius Diekmann [view email]
[v1] Fri, 1 Apr 2016 15:02:28 GMT (47kb,D)

Link back to: arXiv, form interface, contact.