Research on Packet Filter Rules of the Firewall Based on Visual Prolog
The packet filter rules of firewall are established according to the needs of network security, while to manage filter rules becomes more and more complicated, and easy to make mistakes, especially in enterprise network. In order to implement correct policies, the firewall filter rules should be checked and organized carefully. This paper studied the relations between firewall filter rules, defined each kind of unusual situation, and through the expert system language Visual Prolog realized the function: to inspect the accuracy of the filter rules to deal with filter rules to inspect redundancy and so on. It has made positive effect on enhancing the intelligence of the firewall.