Firewall rule conflict detection method

Fecha de publicación: 31/08/2018
Fuente: Wipo "digitalization"
The invention discloses a firewall rule conflict detection method. The method sequentially comprises the steps of extracting a rule from a rule set, and judging whether the rule has a useless conflict; then comparing the rule with each rule of which the serial number is in front of that of the rule, and judging relation among the rules according to field protocols, sources and target values; and at last judging whether a conflict exists according to the serial number and the value of action field. According to the method provided by the invention, the rule conflict and potential problem can beautomatically detected and found on the given rule set. The tool software for implementing the method can perform detection and assist the administrator to eliminate firewall rule conflicts and simplify the management of the firewall strategy.