Carlo Cimino
An Automated Network Security Workflow based on OpenC2 and VEREFOO.
Rel. Daniele Bringhenti, Riccardo Sisto, Fulvio Valenza. Politecnico di Torino, Master of science program in Cybersecurity, 2025
|
Preview |
PDF (Tesi_di_laurea)
- Thesis
Licence: Creative Commons Attribution Non-commercial No Derivatives. Download (5MB) | Preview |
Abstract
This thesis describes the design, implementation and validation of a connector that act as an automated bridge between the OpenC2 Context Discovery (CTXD) specification and the VEREFOO formal verification framework. The main objective is to create a closed-loop system for proactive security policy management in modern, dynamic network environments. This thesis project addresses a fundamental challenge: bridging the structural gap between network context information, which is often non-standardized and the rigorous, structured input format required by formal verification tools. The connector is specifically built to manage real-time network topological data, provided in OpenC2 CTXD JSON format, and translate it into a comprehensive network graph model that is compliant with VEREFOO's NFV XML schema.
The implementation of the connector is detailed in a Python script that operate a multi-stage workflow
Relators
Academic year
Publication type
Number of Pages
Course of studies
Classe di laurea
URI
![]() |
Modify record (reserved for operators) |
