{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,11,18]],"date-time":"2025-11-18T09:14:52Z","timestamp":1763457292647},"reference-count":25,"publisher":"Springer Science and Business Media LLC","issue":"2","license":[{"start":{"date-parts":[[2011,9,30]],"date-time":"2011-09-30T00:00:00Z","timestamp":1317340800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["J Ambient Intell Human Comput"],"published-print":{"date-parts":[[2013,4]]},"DOI":"10.1007\/s12652-011-0069-8","type":"journal-article","created":{"date-parts":[[2011,9,28]],"date-time":"2011-09-28T22:08:06Z","timestamp":1317247686000},"page":"223-234","source":"Crossref","is-referenced-by-count":14,"title":["An intelligent security architecture for distributed firewalling environments"],"prefix":"10.1007","volume":"4","author":[{"given":"Alfredo","family":"De Santis","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Aniello","family":"Castiglione","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ugo","family":"Fiore","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Francesco","family":"Palmieri","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2011,9,30]]},"reference":[{"key":"69_CR1","doi-asserted-by":"crossref","unstructured":"Abbes T, Bouhoula A, Rusinowitch M (2008) An inference system for detecting firewall filtering rules anomalies. In Roger L. Wainwright and Hisham Haddad, editors, SAC 08 Proceedings of the 2008 ACM symposium on Applied computing, pages 2122\u20132128. ACM. ISBN 978-1-59593-753-7","DOI":"10.1145\/1363686.1364197"},{"issue":"1-2","key":"69_CR2","doi-asserted-by":"crossref","first-page":"3","DOI":"10.1504\/IJIPT.2010.032611","volume":"5","author":"M Abedin","year":"2010","unstructured":"Abedin M, Nessa S, Khan L, Al-Shaer E (2010) Analysis of firewall policy rules using traffic mining techniques. International Journal of Internet Protocol Technology 5(1-2):3\u201322","journal-title":"International Journal of Internet Protocol Technology"},{"key":"69_CR3","unstructured":"Al-Shaer E, Hamed H (2004) Discovery of policy anomalies in distributed firewalls. In INFOCOM 2004. Twenty-third AnnualJoint Conference of the IEEE Computer and Communications Societies 4:2605 \u20132616"},{"key":"69_CR4","first-page":"291","volume":"6","author":"N Bashah","year":"2005","unstructured":"Bashah N, Bharanidharan Shanmugam I, Ahmed A (2005) Hybrid Intelligent Intrusion Detection System. Transactions on Engineering, Computing and Technology 6:291\u2013294","journal-title":"Transactions on Engineering, Computing and Technology"},{"key":"69_CR5","doi-asserted-by":"crossref","unstructured":"Castiglione A, De Santis A, Fiore U, Palmieri F (2010) An enhanced firewall scheme for dynamic and adaptive containment of emerging security threats. In Broadband, Wireless Computing, Communication and Applications (BWCCA), 2010 International Conference on :475\u2013481","DOI":"10.1109\/BWCCA.2010.117"},{"key":"69_CR6","doi-asserted-by":"crossref","unstructured":"De Capitani di Vimercati S, Foresti S, Jajodia S, Samarati P (2007) Access control policies and languages in open environments. In Secure Data Management in Decentralized Systems, volume 33 of Advances in Information Security, pages 21\u201358. Springer. ISBN 978-0-387-27694-6","DOI":"10.1007\/978-0-387-27696-0_2"},{"key":"69_CR7","doi-asserted-by":"crossref","unstructured":"Debar H, Curry DA, Feinstein BS (2007) The Intrusion Detection Message Exchange Format (IDMEF). RFC 4765, March 2007. http:\/\/www.faqs.org\/rfcs\/rfc4765.htm ..","DOI":"10.17487\/rfc4765"},{"key":"69_CR8","doi-asserted-by":"crossref","unstructured":"Feinstein BS, Matthews GA (2007) The Intrusion Detection Exchange Protocol (IDXP). RFC 4767, March 2007 . http:\/\/www.faqs.org\/rfcs\/rfc4767.html","DOI":"10.17487\/rfc4767"},{"key":"69_CR9","doi-asserted-by":"crossref","unstructured":"Frigault M, Wang L (2008) Measuring network security using bayesian network-based attack graphs. In Computer Software and Applications, 2008. COMPSAC 08. 32nd Annual IEEE International Conference on, pages 698\u2013703. IEEE Computer Society. ISBN 978-0-7695-3262-2","DOI":"10.1109\/COMPSAC.2008.88"},{"key":"69_CR10","doi-asserted-by":"crossref","unstructured":"Gu Y, McCallum A, Towsley D (2005) Detecting anomalies in network traffic using maximum entropy estimation. In Proceedings of the 5th ACM SIGCOMM conference on Internet Measurement, IMC \u201905, pages 32\u201332, Berkeley, CA, USA. USENIX Association.","DOI":"10.1145\/1330107.1330148"},{"key":"69_CR11","doi-asserted-by":"crossref","unstructured":"Hamed H, Al-Shaer E (2006) Taxonomy of conflicts in network security policies. Communications Magazine, IEEE 44(3):134\u2013141, march 2006. ISSN 0163-6804","DOI":"10.1109\/MCOM.2006.1607877"},{"issue":"3","key":"69_CR12","doi-asserted-by":"crossref","first-page":"183","DOI":"10.1002\/nem.697","volume":"19","author":"S Kao","year":"2009","unstructured":"Kao S, Shiue L (2009) Security management of mutually trusted domains through cooperation of defensive technologies. Int. Journal of Network Management 19(3):183\u2013201","journal-title":"Int. Journal of Network Management"},{"key":"69_CR13","unstructured":"Knuth DE (1997) The Art of Computer Programming, Volume I: Fundamental Algorithms, 3rd Edition. Addison-Wesley"},{"key":"69_CR14","doi-asserted-by":"crossref","unstructured":"Lakhina A, Crovella M, Diot C (2004) Diagnosing network-wide traffic anomalies. SIGCOMM Comput. Commun. Rev. 34:219\u2013230, August 2004. ISSN 0146-4833","DOI":"10.1145\/1015467.1015492"},{"key":"69_CR15","doi-asserted-by":"crossref","unstructured":"Mayer A, Wool A, Ziskind E (2000) Fang: a firewall analysis engine. In Security and Privacy, 2000. S P 2000. Proceedings. 2000 IEEE Symposium on :177\u2013187","DOI":"10.1109\/SECPRI.2000.848455"},{"key":"69_CR16","unstructured":"NetCitadel LLC (2010) http:\/\/www.fwbuilder.org\/"},{"issue":"1-2","key":"69_CR17","doi-asserted-by":"crossref","first-page":"48","DOI":"10.1016\/j.cose.2007.11.001","volume":"27","author":"F Palmieri","year":"2008","unstructured":"Palmieri F, Fiore U (2008) Containing large-scale worm spreading in the internet by cooperative distribution of traffic filtering policies. Computers & Security 27(1-2):48\u201362","journal-title":"Computers & Security"},{"issue":"7","key":"69_CR18","doi-asserted-by":"crossref","first-page":"737","DOI":"10.1016\/j.cose.2010.05.002","volume":"29","author":"F Palmieri","year":"2010","unstructured":"Palmieri F, Fiore U (2010) Network anomaly detection through nonlinear analysis. Computers & Security 29(7):737\u2013755","journal-title":"Computers & Security"},{"key":"69_CR19","doi-asserted-by":"crossref","unstructured":"Pozo S, Ceballos R, Gasca RM (2008) Afpl, an abstract language model for firewall acls. In Proceedings of the international conference on Computational Science and Its Applications, Part II, ICCSA \u201908, pages 468\u2013483, Berlin, Heidelberg. Springer-Verlag. ISBN 978-3-540-69840-1.","DOI":"10.1007\/978-3-540-69848-7_39"},{"key":"69_CR20","unstructured":"RedSeal Inc (2011) http:\/\/www.redseal.net\/products\/redseal-networkadvisor , March 2011"},{"key":"69_CR21","doi-asserted-by":"crossref","unstructured":"Samak T, Al-Shaer E (2010) Synthetic security policy generation via network traffic clustering. In Proceedings of the 3rd ACM workshop on Artificial intelligence and security, AISec \u201910, pages 45\u201353, New York, NY, USA .ACM. ISBN 978-1-4503-0088-9","DOI":"10.1145\/1866423.1866433"},{"key":"69_CR22","doi-asserted-by":"crossref","unstructured":"Samak T, El-Atawy A, Al-Shaer E Towards network security policy generation for configuration analysis and testing. In Proceedings of the 2nd ACM workshop on Assurable and usable security configuration, SafeConfig \u201909, pages 45\u201352, New York, NY, USA, 2009. ACM. ISBN 978-1-60558-778-3","DOI":"10.1145\/1655062.1655072"},{"key":"69_CR23","unstructured":"SkyBox Inc (2011) http:\/\/http:\/\/www.skyboxsecurity.com\/ , March 2011"},{"key":"69_CR24","doi-asserted-by":"crossref","unstructured":"Vaarandi R, Podins K (2010) Network ids alert classification with frequent itemset mining and data clustering. In Network and Service Management (CNSM), 2010 International Conference on, pages 451 \u2013456. IEEE, oct","DOI":"10.1109\/CNSM.2010.5691262"},{"key":"69_CR25","doi-asserted-by":"crossref","unstructured":"Zhang B, Al-Shaer E, Jagadeesan R, Riely J, Pitcher C (2007) Specifications of a high-level conflict-free firewall policy language for multi-domain networks. In Proceedings of the 12th ACM symposium on Access control models and technologies, pages 185\u2013194. ISBN 978-1-59593-745-2","DOI":"10.1145\/1266840.1266871"}],"container-title":["Journal of Ambient Intelligence and Humanized Computing"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s12652-011-0069-8.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/article\/10.1007\/s12652-011-0069-8\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/s12652-011-0069-8","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,6,16]],"date-time":"2019-06-16T13:54:38Z","timestamp":1560693278000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/s12652-011-0069-8"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2011,9,30]]},"references-count":25,"journal-issue":{"issue":"2","published-print":{"date-parts":[[2013,4]]}},"alternative-id":["69"],"URL":"https:\/\/doi.org\/10.1007\/s12652-011-0069-8","relation":{},"ISSN":["1868-5137","1868-5145"],"issn-type":[{"value":"1868-5137","type":"print"},{"value":"1868-5145","type":"electronic"}],"subject":[],"published":{"date-parts":[[2011,9,30]]}}}