PBit : a pattern based testing framework for Linux iptables

Firewall testing is important because fifewall faults can lead to security failures. Firewall testing is hard because firewall rules havdp&a+eters, producing a huge number of possible parameter combinations. This thesis presents a firewall testing methodology based on test templates, which are p...

Full description

Bibliographic Details
Main Author: Du, Yong.
Other Authors: Hoffman, Daniel M.|Walsh, Peter Anthony
Published: 2008
Subjects:
Online Access:http://hdl.handle.net/1828/447
id ndltd-uvic.ca-oai-dspace.library.uvic.ca-1828-447
record_format oai_dc
spelling ndltd-uvic.ca-oai-dspace.library.uvic.ca-1828-4472017-04-12T17:31:38Z PBit : a pattern based testing framework for Linux iptables Du, Yong. Hoffman, Daniel M.|Walsh, Peter Anthony Linux Firewalls (Computer security) Firewall testing is important because fifewall faults can lead to security failures. Firewall testing is hard because firewall rules havdp&a+eters, producing a huge number of possible parameter combinations. This thesis presents a firewall testing methodology based on test templates, which are parameterized test cases. A firewall testing framework for iptables, the Linux firewall subsystem, has been implemented. Twelve test templates have been created for testing iptables parameters and extensions. A GUI tool is also provided to integrate these test templates with various test generation strategies. The most important of these strategies, painvise generation, has been investigated in detail. Based on the investigation, we developed an improved painvise generation algorithm. 2008-04-10T05:57:35Z 2008-04-10T05:57:35Z 2004 2008-04-10T05:57:35Z http://hdl.handle.net/1828/447
collection NDLTD
sources NDLTD
topic Linux
Firewalls (Computer security)
spellingShingle Linux
Firewalls (Computer security)
Du, Yong.
PBit : a pattern based testing framework for Linux iptables
description Firewall testing is important because fifewall faults can lead to security failures. Firewall testing is hard because firewall rules havdp&a+eters, producing a huge number of possible parameter combinations. This thesis presents a firewall testing methodology based on test templates, which are parameterized test cases. A firewall testing framework for iptables, the Linux firewall subsystem, has been implemented. Twelve test templates have been created for testing iptables parameters and extensions. A GUI tool is also provided to integrate these test templates with various test generation strategies. The most important of these strategies, painvise generation, has been investigated in detail. Based on the investigation, we developed an improved painvise generation algorithm.
author2 Hoffman, Daniel M.|Walsh, Peter Anthony
author_facet Hoffman, Daniel M.|Walsh, Peter Anthony
Du, Yong.
author Du, Yong.
author_sort Du, Yong.
title PBit : a pattern based testing framework for Linux iptables
title_short PBit : a pattern based testing framework for Linux iptables
title_full PBit : a pattern based testing framework for Linux iptables
title_fullStr PBit : a pattern based testing framework for Linux iptables
title_full_unstemmed PBit : a pattern based testing framework for Linux iptables
title_sort pbit : a pattern based testing framework for linux iptables
publishDate 2008
url http://hdl.handle.net/1828/447
work_keys_str_mv AT duyong pbitapatternbasedtestingframeworkforlinuxiptables
_version_ 1718437708134612992