|
TR-775-07
A Formal Approach to Practical Network Security Management (thesis) |
|
| Authors: | Govindavajhala, Sudhakar |
| Date: | February 2007 |
| Pages: | 151 |
| Download Formats: | [PDF] |
When a system administrator configures a network so it is secure, he understands very well the users, data, and most importantly the intent—what he is trying to do. However,he has a limited understanding of the mechanisms by which components interact and the details of each component. He could easily miscongure the network so a hacker could steal confidential data. In addition to this complexity, about one hundred new security vulnerabilities are found each week, which makes it even more difficult to manage the security of a network installation---because of the large number of program vulnerabilities and challenging time constraints. Even professional administrators find this a difficult (impossible) task. How does one enable the system administrator to securely congure the network with a limited understanding of its components, program bugs and their interactions? |
|