An Automated ACL Generation System using Directory Service Information and Network Traffic Data

DOI

Bibliographic Information

Other Title
  • ディレクトリサービス情報とトラフィックデータによるACL自動生成システム

Abstract

Cyber attacks have been sophisticated. Attackers investigate the target carefully and generate dedicated malwares that slip through security measures. Separating network and controlling access between them are hopeful effective measures. It can prevent unintended communication by malwares and make us possible to detect malwares easily. However, it is difficult to construct such separated network due to treating many information about the organization to determine unnecessary communication. We have been proposed a system which constructs separated network with information from directory service and real traffic data. We confirmed the effectiveness of the proposal with improved prototype system and subject experiment.

Journal

Details 詳細情報について

Report a problem

Back to top