System, method and program product for managing a security policy of a firewall. The firewall receives a message packet addressed to a specified port of a destination IP address and determines that the firewall does not have a message flow rule which permits passing of the message packet to the port....http://www.google.de/patents/US20060174337?utm_source=gb-gplus-sharePatent US20060174337 - System, method and program product to identify additional firewall rules that may be needed