Firewalls White Papers
FireCracker: A Framework for Inferring Firewall Policies Using Smart Probing
Overview A firewall policy that is correct and complete is crucial to the safety of a computer network. An adversary will benefit a lot from knowing the policy or its semantics. This paper proposes a framework that could be used to blindly discover a firewall policy remotely as a black box and without prior knowledge about the network configuration. It shows how an attacker can reconstruct a firewall's policy by probing the firewall with tailored packets into a network and forming an idea of what the policy looks like. The proposed methodology shows how to discover a policy that is semantically equivalent to the original one used in the deployed firewall.
| Publisher | DePaul University | File Format | |
|---|---|---|---|
| Date Published | September 2007 | ||
| Format | White Papers | ||
| Topics | |||



