scispace - formally typeset
A

Andrew J. Bernoth

Researcher at IBM

Publications -  12
Citations -  221

Andrew J. Bernoth is an academic researcher from IBM. The author has contributed to research in topics: Network packet & Firewall (construction). The author has an hindex of 7, co-authored 12 publications receiving 221 citations.

Papers
More filters
Proceedings ArticleDOI

A Layered Security Approach for Cloud Computing Infrastructure

TL;DR: This paper introduces a practical security model based on key security considerations by looking at a number of infrastructure aspects of Cloud Computing such as SaaS, Utility, Web, Platform and Managed Services, Service commerce platforms and Internet Integration.
Patent

System, method and program product to identify additional firewall rules that may be needed

TL;DR: In this paper, the firewall receives a message packet addressed to a specified port of a destination IP address and determines that the firewall does not have a message flow rule which permits passing of the message packet to the port.
Patent

Security checking program for communication between networks

TL;DR: In this paper, a method for determining if a multiplicity of networks are authorized to communicate with each other and what IP protocol can be used for communication between each combination of two of the networks is presented.
Patent

Method and system for determining whether to alter a firewall configuration

TL;DR: In this paper, a method and system for determining whether to alter a firewall configuration is presented, based on message flow data associated with a message packet blocked by a firewall is received, and an electronic recommendation indicating whether to add to the firewall a message flow rule that permits the message flow to pass is determined.
Patent

Method and sysem for utilizing an expert system to determine whether to alter a firewall configuration

TL;DR: In this paper, an expert system assigns predefined risk values to the message flow data so that each risk value is associated with a source network, destination network or destination port included in the data.