สามารถอ่าน version ภาษาไทยได้ด้านล่างเช่นเคยครับ Sometime it's call Firewall Rule Re-validate or Firewall Rule-base review . Firewall Rule review is part of Firewall audit process. Auditor will review Firewall Rule or ACLs on router that appropriate to network security no need rule will be removed for example permit ip any any : it's should not be placed in top of each segment of network. why ! firewall rule review From my experience, many organization will have firewall admin who is responsible for add, move, delete, modify rules but he never come back to see which rule is expired or no need, which rule can be merge or have to re-arrange sequence to improve performance and mitigate risk from attacker. what can we do 1. Duplicate object include host, ip, group, service must be removed. 2. Expired rule or no need rule must be removed. 3. Duplicate rule --> remove ^^ 4. There is rule that can be merge no bad impact to business...
My Security and Penetration Testing Life.