Policy Coverage Analysis

The coverage problem among policies arises most often in the case of security policies. The problem is to determine if there are any cases in which a policy rule is not being put into place. For example, suppose that the security policy is defined by mapping a set of application flows into security classes. The default security class is to have no security. You want to know which applications will be mapped into the default class, and therefore will have no security.

You might question the policy of having no security be the default. However, because of the performance penalties associated with encryption and authentication protocol, having the default policy of open communication might be a reasonable choice in many ...

Get Policy-Based Networking: Architecture and Algorithms now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.