Jump to Content

Capirca

Paul (Tony) Watson
Blackhat USA (2011) (to appear)

Abstract

Capirca is an open-sourced cross-platform network security policy compiler developed at Google. It allows the creation and deployment of ACL filters across multiple target platforms based on a single security policy and shared network and service definitions. The software is ideal for both small and large organizations to eliminate common errors while greatly simplifying security policy maintenance.