A design of SERDL (Security Evaluation Rule Description Language) and rule execution engine for evaluating security of IPv6 network

Recently, several projects have been implementing IPv6 IPsec (IP security) on the various operating systems. But there is no existing tool that checks the systems, which provide IPsec services, work properly and provide their network security services well in the IPv6 network. In this paper, we design SERDL (Security Evaluation Rule Description Language) to define security evaluation rule and rule execution engine for executing the rules defined by SERDL for evaluating security of the IPv6 network. We developed the prototype of rule execution engine using Java and C language.