Central-managed security mechanisms are often utilized in many organizations, but such server is also a security breaking point. This is because the server has the authority for all nodes that share the security protection. Hence if the attackers successfully tamper the server, the organization will be in trouble. Also, the settings and policies saved on the server are usually not cryptographically secured and ensured with hash. Thus, changing the settings from alternative way is feasible, without causing the security solution to raise any alarms. To mitigate these issues, in this work, we develop BlockFW - a blockchain-based rule sharing firewall to create a managed security mechanism, which provides validation and monitoring from multiple nodes. For BlockFW, all occurred transactions are cryptographically protected to ensure its integrity, making tampering attempts in utmost challenging for attackers. In the evaluation, we explore the performance of BlockFW under several adversarial conditions and demonstrate its effectiveness.
翻译:中心管理的安全机制经常被许多组织使用,但这样的服务器也是一个安全破坏点。这是因为服务器对于共享安全保护的所有节点都拥有权威性。因此,如果攻击者成功篡改服务器,组织将陷入麻烦。此外,保存在服务器上的设置和策略通常没有进行密码学保护和哈希保证。因此,通过其他方式更改设置是可行的,而不会引起安全解决方案引发任何警报。为了缓解这些问题,在这项工作中,我们开发了基于区块链的规则共享防火墙BlockFW,以创建一个管理的安全机制,提供多个节点的验证和监视。对于BlockFW,所有发生的交易都被加密保护,以确保其完整性,使攻击者的篡改尝试变得非常具有挑战性。在评估中,我们在几种对抗条件下探索了BlockFW的性能,并证明了其有效性。